Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j74r-g3fg-pr4g

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

WebKit in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1 allows remote attackers to bypass the Same Origin Policy via crafted Cascading Style Sheets (CSS) token sequences within an SVG file in the SRC attribute of an IMG element.

WebKit in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1 allows remote attackers to bypass the Same Origin Policy via crafted Cascading Style Sheets (CSS) token sequences within an SVG file in the SRC attribute of an IMG element.

EPSS

Процентиль: 76%
0.00977
Низкий

Дефекты

CWE-20

Связанные уязвимости

ubuntu
около 11 лет назад

WebKit in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1 allows remote attackers to bypass the Same Origin Policy via crafted Cascading Style Sheets (CSS) token sequences within an SVG file in the SRC attribute of an IMG element.

nvd
около 11 лет назад

WebKit in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1 allows remote attackers to bypass the Same Origin Policy via crafted Cascading Style Sheets (CSS) token sequences within an SVG file in the SRC attribute of an IMG element.

EPSS

Процентиль: 76%
0.00977
Низкий

Дефекты

CWE-20