CVE-2020-9860
EUVD-2020-3063927.10.2020, 21:15
A custom URL scheme handling issue was addressed with improved input validation. This issue is fixed in Safari 13.0.5. Processing a maliciously crafted URL may lead to arbitrary javascript code execution.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| apple | safari | 𝑥 < 13.0.5 |
𝑥
= Vulnerable software versions