← Back

CVE-2019-8674

nvd nist
Published: Dec 18, 2019Modified: Nov 21, 2024

JSON object

Loading...
6.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

A logic issue was addressed with improved state management. This issue is fixed in iOS 13, Safari 13. Processing maliciously crafted web content may lead to universal cross site scripting.

Affected (3)

2 products
Iphone Os
Safari
1 product
Webkitgtk
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Before 13.0
Before 13
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 2.26.4

References (6)

Source: product-security@apple.com
Third Party Advisory
Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.