This issue was addressed by using HTTPS when sending information over the network. This issue is fixed in Apple Music 3.5.0 for Android. An attacker in a privileged network position can track a user's activity.
2023-02-27T20:15:11.233
2025-03-11T18:15:25.263
Modified
CVSSv3.1: 5.9 (MEDIUM)