cbcvebase.
CVE-2019-8674
published 2019-12-18

CVE-2019-8674: A logic issue was addressed with improved state management. This issue is fixed in iOS 13, Safari 13. Processing maliciously crafted web content may lead to…

medium6.1CVSS 3.1
AVNACLPRNUIRSCCLILAN
A logic issue was addressed with improved state management. This issue is fixed in iOS 13, Safari 13. Processing maliciously crafted web content may lead to universal cross site scripting.

Affected

8 ranges
VendorProductVersion rangeFixed in
appleios
appleios>= unspecified < iOS 13iOS 13
appleiphone_os< 13.013.0
applesafari< 1313
applesafari
applesafari>= unspecified < Safari 13Safari 13
debianwebkit2gtk< webkit2gtk 2.24.4-1 (bookworm)webkit2gtk 2.24.4-1 (bookworm)
webkitgtkwebkitgtk< 2.26.42.26.4

CVSS provenance

nvdv3.16.1MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
osv6.1MEDIUM