CVE-2018-6017: Tinder

Critical severity, CVSS 9.1. EPSS: 1% chance of exploitation in the next 30 days.

Unencrypted transmission of images in Tinder iOS app and Tinder Android app allows an attacker to extract private sensitive information by sniffing network traffic.

Affected products

  • Tinder Tinder: affected versions not specified

Published 2018-01-24. Last modified 2026-06-17.