Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j2p8-r653-mhwj

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Apache Cordova-Android before 4.1.0, when an application relies on a remote server, improperly implements a JavaScript whitelist protection mechanism, which allows attackers to bypass intended access restrictions via a crafted URI.

Apache Cordova-Android before 4.1.0, when an application relies on a remote server, improperly implements a JavaScript whitelist protection mechanism, which allows attackers to bypass intended access restrictions via a crafted URI.

EPSS

Процентиль: 72%
0.00705
Низкий

Связанные уязвимости

nvd
около 10 лет назад

Apache Cordova-Android before 4.1.0, when an application relies on a remote server, improperly implements a JavaScript whitelist protection mechanism, which allows attackers to bypass intended access restrictions via a crafted URI.

EPSS

Процентиль: 72%
0.00705
Низкий