Starbucks has patched a vulnerability in its iOS app that was found spilling user data last week but the researcher that found the vulnerability is still encouraging the company to look at an outstanding geolocation issue still present in the app. The issue involves a file stored on iOS devices under /Starbucks/Library/Preferences/com.mystarbucks.plist that contains the location data of a users last logged. data. Starbucks initially dismissed the vulnerability, calling the vulnerabilities theoretical and asserting there was no known impact to their customers at the time.
Source: https://threatpost.com/starbucks-fixes-vulnerable-ios-app-geolocation-issue-persists/103730/

