CVE-2018-11242: Makemytrip

Medium severity, CVSS 6.5. EPSS: 3.9% chance of exploitation in the next 30 days.

An issue was discovered in the MakeMyTrip application 7.2.4 for Android. The databases (locally stored) are not encrypted and have cleartext that might lead to sensitive information disclosure, as demonstrated by data/com.makemytrip/databases and data/com.makemytrip/Cache SQLite database files.

Affected products

Published 2018-05-20. Last modified 2026-06-17.