Cross-Site Scripting Flaw in Safari and iOS Products by Apple
CVE-2019-8762
6.1MEDIUM
Key Information:
- Vendor
Apple
- Vendor
- CVE Published:
- 27 October 2020
What is CVE-2019-8762?
A validation flaw exists in Apple's Safari web browser and several iOS products, which may allow attackers to craft malicious web content. If exploited, this vulnerability could lead to universal cross-site scripting attacks, enabling unauthorized access and manipulation of user data. Apple has addressed this issue in the latest versions of their products, and users are urged to update to the most recent software versions to mitigate risks associated with this vulnerability.
Affected Version(s)
iCloud for Windows < 10.7
iCloud for Windows < 7.14
iOS and iPadOS < 13.1