6.1
CVSSv3

CVE-2019-11928

Published: 03/09/2020 Updated: 11/09/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

An input validation issue in WhatsApp Desktop versions prior to v0.3.4932 could have allowed cross-site scripting upon clicking on a link from a specially crafted live location message.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

whatsapp whatsapp desktop

Recent Articles

Darknet market's peacemaker sentenced to 11 years in prison
The Register • Shaun Nichols in San Francisco • 07 Sep 2020

Sealed with an XSS: Flaw in Go lang library could cause app issues Snowden was right: US court deems NSA bulk phone-call snooping illegal, possibly unconstitutional, and probably pointless anyway

In Brief A Colorado man will spend more than a decade behind bars for trying to settle a few arguments, albeit on an online souk selling highly illegal stuff. Bryan Connor Herrell, aka "penissmith" and/or "botah" has been sentenced to 11 years for his work as a sort of problem solver on the Alphabay crime market. The moderator was tasked with settling disputes between sellers and their customers, usually involving drugs. In addition to handling disputes, he was also asked to watch for scammers w...

Facebook to blab bugs it finds if it thinks code owners aren’t fixing fast enough
The Register • Simon Sharwood, APAC Editor • 04 Sep 2020

And reveals half a dozen WhatsApp bugs into the bargain Facebook fires sueball at 'malicious' app SDK makers, accuses them of gobbling up people's personal information

Facebook has published its first Vulnerability Disclosure Policy and given itself grounds to blab the existence of bugs to the world if it thinks that’s the right thing to do. “Facebook may occasionally find critical security bugs or vulnerabilities in third-party code and systems, including open source software,” the company writes. “When that happens, our priority is to see these issues promptly fixed, while making sure that people impacted are informed so that they can protect themsel...