CVE-2020-25900

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
05/06/2026
Last modified:
05/06/2026

Description

HelloTalk through 3.4.1 stores full-precision GPS coordinates even when the user had intended to share only a country or city. Furthermore, these coordinates are placed into a database on the client of other users. (The client side was changed in 2019 to encrypt that database.)

References to Advisories, Solutions, and Tools