Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-338x-j9c9-2c8v

Опубликовано: 17 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

This issue was addressed with improved URL validation. This issue is fixed in macOS Tahoe 26.2, Safari 26.2. On a Mac with Lockdown Mode enabled, web content opened via a file URL may be able to use Web APIs that should be restricted.

This issue was addressed with improved URL validation. This issue is fixed in macOS Tahoe 26.2, Safari 26.2. On a Mac with Lockdown Mode enabled, web content opened via a file URL may be able to use Web APIs that should be restricted.

EPSS

Процентиль: 17%
0.00055
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-601

Связанные уязвимости

CVSS3: 9.8
nvd
около 2 месяцев назад

This issue was addressed with improved URL validation. This issue is fixed in macOS Tahoe 26.2, Safari 26.2. On a Mac with Lockdown Mode enabled, web content opened via a file URL may be able to use Web APIs that should be restricted.

EPSS

Процентиль: 17%
0.00055
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-601