CVE-2023-2507
EUVD-2023-217415.07.2023, 19:15
CleverTap Cordova Plugin version 2.6.2 allows a remote attacker to execute JavaScript code in any application that is opened via a specially constructed deeplink by an attacker. This is possible because the plugin does not correctly validate the data coming from the deeplinks before using them.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| clevertap | clevertap | 2.6.2 |
𝑥
= Vulnerable software versions