CVE detail
CVE-2020-20094 — CVE-2020-20094
Published 2022-03-23 · Modified 2026-06-17 · Vendor facebook · Product instagram · Source nvd
MEDIUM
severity
CVSS-derived band
0.0138
EPSS probability
exploitation probability, 30d
69.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
Instagram iOS 106.0 and prior and Android 107.0.0.11 and prior user interface does not properly represent URI messages to the user, which results in URI spoofing via specially crafted messages
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References