Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
apple webkit vulnerabilities and exploits
(subscribe to this query)
10
CVSSv2
CVE-2010-1760
loader/DocumentThreadableLoader.cpp in the XMLHttpRequest implementation in WebCore in WebKit before r58409 does not properly handle credentials during a cross-origin synchronous request, which has unspecified impact and remote attack vectors, aka rdar problem 7905150.
Apple Webkit
Apple Webkit R50173
Apple Webkit R56187
Apple Webkit R56188
Apple Webkit R56379
10
CVSSv2
CVE-2010-1386
page/Geolocation.cpp in WebCore in WebKit before r56188 and prior to 1.2.5 does not properly restrict access to the lastPosition function, which has unspecified impact and remote attack vectors, aka rdar problem 7746357.
Apple Webkit
Apple Webkit R50173
4.3
CVSSv2
CVE-2010-1729
WebKit.dll in WebKit, as used in Safari.exe 4.531.9.1 in Apple Safari, allows remote malicious users to cause a denial of service (application crash) via JavaScript that writes <marquee> sequences in an infinite loop.
Apple Safari
Apple Webkit
5.4
CVSSv3
CVE-2016-4590
WebKit in Apple iOS prior to 9.3.3 and Safari prior to 9.1.2 mishandles about: URLs, which allows remote malicious users to bypass the Same Origin Policy via a crafted web site.
Apple Safari
Apple Webkit
5.8
CVSSv2
CVE-2010-1126
The JavaScript implementation in WebKit allows remote malicious users to send selected keystrokes to a form field in a hidden frame, instead of the intended form field in a visible frame, via certain calls to the focus method.
Apple Webkit
6.5
CVSSv3
CVE-2016-4587
WebKit in Apple iOS prior to 9.3.3 and tvOS prior to 9.2.2 allows remote malicious users to obtain sensitive information from uninitialized process memory via a crafted web site.
Apple Webkit
6.1
CVSSv3
CVE-2016-4585
Cross-site scripting (XSS) vulnerability in the WebKit Page Loading implementation in Apple iOS prior to 9.3.3, Safari prior to 9.1.2, and tvOS prior to 9.2.2 allows remote malicious users to inject arbitrary web script or HTML via an HTTP response specifying redirection that is ...
Apple Webkit
8.8
CVSSv3
CVE-2016-4588
WebKit in Apple tvOS prior to 9.2.2 allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.
Apple Webkit
8.8
CVSSv3
CVE-2016-4589
WebKit in Apple iOS prior to 9.3.3, Safari prior to 9.1.2, and tvOS prior to 9.2.2 allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2016-4622, CVE-2016-4623, and CVE...
Apple Webkit
7.5
CVSSv3
CVE-2016-4591
WebKit in Apple iOS prior to 9.3.3, Safari prior to 9.1.2, and tvOS prior to 9.2.2 mishandles the location variable, which allows remote malicious users to access the local filesystem via unspecified vectors.
Apple Webkit
Preferred Score:
CVSSv3
CVSSv2
CVSSv3
CVSSv4
EPSS
VMScore
Recommendations:
CVE-2024-51941
CVE-2024-24417
server-side request forgery
jd edwards enterpriseone tools
google
hardcoded
CVE-2025-21569
weblogic server
IDOR
CVE-2024-24418
CVE-2024-55591
CVE-2024-49138
peoplesoft enterprise cc common application objects
Home
/
Search Results
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
NEXT »