Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cvp2-5m4q-66qv

Опубликовано: 29 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

Focus was incorrectly allowing internal links to utilize the app scheme used for deeplinking, which could result in links potentially circumventing some URL safety checks This vulnerability affects Focus for iOS < 132.

Focus was incorrectly allowing internal links to utilize the app scheme used for deeplinking, which could result in links potentially circumventing some URL safety checks This vulnerability affects Focus for iOS < 132.

EPSS

Процентиль: 53%
0.00297
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 6.5
nvd
больше 1 года назад

Focus was incorrectly allowing internal links to utilize the app scheme used for deeplinking, which could result in links potentially circumventing some URL safety checks This vulnerability affects Focus for iOS < 132.

CVSS3: 6.5
debian
больше 1 года назад

Focus was incorrectly allowing internal links to utilize the app schem ...

EPSS

Процентиль: 53%
0.00297
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-287