Known vulnerabilities in OneDrive for Android
Vendor:
Microsoft
Software:
OneDrive for Android
Software CPE:
cpe:2.3:a:microsoft:onedrive_for_android:*:*:*:*:*:android:*:*
Website:
https://www.microsoft.com
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
7.2
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU118293 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2025-60722 |
CWE-22 | Medium | - | 11.11.2025 |
SB2025111160 |
||
| #VU73556 - Exposure of sensitive information to an unauthorized actor CVE-2023-24923 |
CWE-200 | Medium | - | 14.03.2023 |
SB2023031451 |
||
| #VU73555 - Exposure of sensitive information to an unauthorized actor CVE-2023-24882 |
CWE-200 | Medium | - | 14.03.2023 |
SB2023031451 |
||
| #VU60447 - Security Features CVE-2022-23255 |
CWE-254 | Low | - | 08.02.2022 |
SB2022020854 |
||
| #VU24264 - Security Features CVE-2020-0654 |
CWE-254 | Low | - | 14.01.2020 |
SB2020011427 |