When the Mira Android app opens in-app WebView content (e.g., shop redirect flows), the user's live session token is appended to the URL as a query string parameter, and a persistent user identifier is included in the WebView's User-Agent header. Both are then transmitted to third-party web properties, referrer logs, and any JavaScript running in the WebView context.
Metrics
Affected Vendors & Products
References
History
Wed, 12 Aug 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 11 Aug 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | When the Mira Android app opens in-app WebView content (e.g., shop redirect flows), the user's live session token is appended to the URL as a query string parameter, and a persistent user identifier is included in the WebView's User-Agent header. Both are then transmitted to third-party web properties, referrer logs, and any JavaScript running in the WebView context. | |
| Title | Mira Hormone Monitor, Mira Android App Use of GET request method with sensitive query strings | |
| Weaknesses | CWE-598 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-08-12T12:57:47.450Z
Reserved: 2026-08-03T16:54:56.493Z
Link: CVE-2026-66832
Updated: 2026-08-12T12:57:41.995Z
Status : Received
Published: 2026-08-11T21:17:49.713
Modified: 2026-08-12T14:18:33.290
Link: CVE-2026-66832
No data.
OpenCVE Enrichment
Updated: 2026-08-12T20:15:03Z