Facebook Photo API Bug Exposes Photos of Up to 6.8 Million Users

Last updated September 17, 2021
Written by:
Nitish Singh
Image Courtesy of Facebook

Facebook’s worst year since its release continues with the social media company being hit with yet another data privacy scandal. A bug in the social media platform’s Photos API made photos of up to 6.8 million users visible to app developers between September 13th to September 25th.

Facebook apologized for the incident but did not offer details on when the bug was discovered. The social media company fixed the issue on September 25 and continued to investigate the extent of damage caused by the bug. The delay between the incident and the company reporting it could lead to more controversy with the GDPR, as Facebook missed the deadlines for reporting the data leak.

Facebook will release tools next week that will help developers check if they got access to the unposted photos and they will need to be deleted by the developers. Affected users will receive a notification on the website and the app and will be redirected to the Help Center to check if they have wrongful photo access.

It is surprising to note that Facebook stores photos you upload but do not post and moreover, the photos being sent out to third-party developers definitely taints the social media company’s image even further. This is not the first time the social media company has faced a privacy failure with a number of incidents stacking up over the past year.

Three major incidents have occurred this year including a status update bug in May, a Live video bug in October as well as user authentication tokens being stolen and more recently a bug that allowed websites access to “Likes” data without permission in November. There have been too many security incidents in the company, and it is unlikely an apology is going to help the current situation.

What are your thoughts on the Facebook Photos API bug? Let us know in the comments below. Also, don’t forget to follow us on Facebook and Twitter. Thanks!



For a better user experience we recommend using a more modern browser. We support the latest version of the following browsers: For a better user experience we recommend using the latest version of the following browsers: