CVE-2019-8674

MEDIUM WAF: High
CVSS 6.1 Published: 2019-12-18
CWE-79

A logic issue was addressed with improved state management. This issue is fixed in iOS 13, Safari 13. Processing maliciously crafted web content may lead to universal cross site scripting.

WAF Coverage Analysis

Cross-Site Scripting (XSS) High WAF Coverage

OWASP: A03:2021 Injection

941xxx - XSS / XXE

Affected Software

VendorProductVersion
applesafariup to 13
appleiphone_osup to 13.0
webkitgtkwebkitgtkup to 2.26.4

References

Back to CVE Database