Cleartext API Key Vulnerability in Flock Safety's Peripheral Application for Android
CVE-2025-59405
What is CVE-2025-59405?
The Flock Safety Peripheral application version 7.38.3 for Android is vulnerable due to the presence of a cleartext DataDog API key within its codebase. This API key, intended to remain confidential, can be easily extracted by attackers through decompilation or inspection of the application binaries. The exposure of such sensitive information could potentially allow unauthorized access to the application’s backend services. As the application is installed on Flock Safety's Falcon and Sparrow License Plate Readers and Bravo Edge AI Compute Devices, the implications of this vulnerability could extend to all devices utilizing this software.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
