cbcvebase.
CVE-2020-9860
published 2020-10-27

CVE-2020-9860: A custom URL scheme handling issue was addressed with improved input validation. This issue is fixed in Safari 13.0.5. Processing a maliciously crafted URL may…

medium5.4CVSS 3.1
AVNACLPRNUIRSUCLILAN
A custom URL scheme handling issue was addressed with improved input validation. This issue is fixed in Safari 13.0.5. Processing a maliciously crafted URL may lead to arbitrary javascript code execution.

Affected

2 ranges
VendorProductVersion rangeFixed in
applesafari< 13.0.513.0.5
applesafari>= unspecified < 13.013.0