A critical vulnerability in the Feedly app left millions of Android app users vulnerable to the JavaScript infections. The vulnerability allows an attacker to execute any JavaScript code on client-side. The app was failed to sanitize the Javascript code written in the original articles on subscribed websites or blogs, leaving millions of their feed subscribers open to the injection attacks. More than 5 million users have installed Feedly apps into their Android devices, according to Google Play Store, more than 5 Million users have downloaded the app.
Source: https://thehackernews.com/2014/04/feedly-android-app-javascript-injection.html

