WhatsApp Reported a Dozen Security Vulnerabilities in 2019, US Database Reveals

Of the total vulnerabilities discovered in WhatsApp, seven were classed as “critical”.

Advertisement
By Jagmeet Singh | Updated: 29 January 2020 17:19 IST
Highlights
  • WhatsApp in the past few years reported one or two security flaws
  • This shows a significant increase in vulnerabilities last year
  • WhatsApp was found to enable Pegasus to spy users

WhatsApp was hit by major security flaws last year

WhatsApp is found to have disclosed as many as 12 vulnerabilities in 2019, significantly higher than the one or two security flaws it reported in the past few years. The latest discovery comes hot on the heels of the alleged hacking of Amazon founder and CEO Jeff Bezos' phone that was allegedly due to a WhatsApp loophole. The hacking, which was reported last week, raised eyebrows for the instant messaging app that was acquired by Facebook in February 2014. WhatsApp also last year faced a controversy in India when a vulnerability was used to allegedly enable snooping of human rights activists and journalists in the country through an Israeli spyware called Pegasus.

According to the entries available on the US National Vulnerability Database (NVD), WhatsApp reported 12 vulnerabilities last year. A total of seven vulnerabilities of the total count were classed as “critical”.

Advertisement

The list of vulnerabilities disclosed by WhatsApp include the CVE-2019-3568 bug that was marked critical and discovered within the VoIP (voice-over-Internet-protocol) stack of the app in May last year. It allowed hackers to remotely execute malicious code on smartphones.

Similarly, another critical flaw that was tracked by CVE-2019-11933 is a part of the US database. It was described as a heap buffer overflow bug and impacted WhatsApp for Android prior to version 2.19.291. It could enable attackers to execute malicious code or cause a denial of service.

Advertisement

The database entries were first reported by Financial Times. Gadgets 360 was, however, able to independently verify their existence on the NVD site.

Security issues impacted WhatsApp largely in 2019. Spyware Pegasus was spotted exploiting WhatsApp's video calling system and allegedly helped governments hack into mobile devices of more than 100 people worldwide, including journalists and human rights workers. India was amongst the key markets for the spyware that was provided by Israeli surveillance company NSO and was allegedly used in May.

Advertisement

A report by Check Point last month also revealed a bug that could have allowed attackers to crash WhatsApp by delivering a malicious group message. The bug was discovered in August and had the potential to cause a crash loop.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Moto G47 Debuts Globally With a 108-Megapixel Camera at This Price
  2. iQOO Z11 Global Variant Visits Geekbench With a Different Snapdragon Chip
  3. CMF Watch 3 Pro India Launch Finally Confirmed, Here's What to Expect
  4. House of the Dragon Season 3 OTT Release Date: When and Where to Watch it Online?
  5. These Four Xiaomi Phones Are Now Eligible to Get Android 17 Beta Updates
  6. Valathu Vashathe Kallan OTT Release: Where to Watch Malayalam Crime Thriller Online
  7. Moto G37 Power, Moto G37 Launched With Dimensity 6300 Chip: See Price
  8. Moto G87 Launched With 200-Megapixel Main Camera, 5,200mAh Battery
  9. OnePlus Pad 4 Launched in India With Flagship Chip and These Features
  1. ULA Atlas V Launches 29 Amazon Kuiper Satellites in Return Mission
  2. Moto Buds 2 Plus Launched in India With Hi-Res Audio, Up to 40 Hours of Total Playback Time: Price, Features
  3. iQOO Z11 Global Variant Spotted on Geekbench Database With Snapdragon Chipset, Unlike Chinese Model
  4. Samsung Reportedly Plans to Launch Galaxy Book Models With Android-Based One UI 9 Soon
  5. PS5 Linux Loader Gets Public Release, Allowing Users to Run Steam and PC Games on Console
  6. Nine Crypto Scam Centres Targeting US Users Shut Down in Joint Operation Involving UAE, US and China
  7. Google Photos Unveils New AI-Powered Wardrobe Feature to Help You Decide What to Wear
  8. OpenAI CEO Sam Altman Teases GPT-5.5 Cyber AI Model Rollout, Could Take On Anthropic’s Claude Mythos
  9. Vivo X Fold 6 Leaks Hint at 200-Megapixel Camera, MediaTek Dimensity 9500 Chip and 7,000mAh Battery
  10. Raakaasa OTT Release Date Confirmed: Know When and Where to Watch it Online
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.