Vulnerabilities > Apple > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-07-09 CVE-2018-4945 Incorrect Type Conversion or Cast vulnerability in multiple products
Adobe Flash Player versions 29.0.0.171 and earlier have a Type Confusion vulnerability.
6.8
2018-06-11 CVE-2018-5121 Improper Input Validation vulnerability in Mozilla Firefox
Low descenders on some Tibetan characters in several fonts on OS X are clipped when rendered in the addressbar.
network
low complexity
mozilla apple CWE-20
5.0
2018-06-11 CVE-2018-5110 Improper Input Validation vulnerability in Mozilla Firefox
If cursor visibility is toggled by script using from 'none' to an image and back through script, the cursor will be rendered temporarily invisible within Firefox.
network
low complexity
mozilla apple CWE-20
5.0
2018-06-11 CVE-2017-7836 Uncontrolled Search Path Element vulnerability in Mozilla Firefox
The "pingsender" executable used by the Firefox Health Report dynamically loads a system copy of libcurl, which an attacker could replace.
local
low complexity
mozilla apple linux CWE-427
4.6
2018-06-11 CVE-2017-7825 Improper Input Validation vulnerability in multiple products
Several fonts on OS X display some Tibetan and Arabic characters as whitespace.
network
low complexity
debian mozilla apple CWE-20
5.0
2018-06-11 CVE-2017-7763 Improper Input Validation vulnerability in Mozilla Firefox, Firefox ESR and Thunderbird
Default fonts on OS X display some Tibetan characters as whitespace.
network
low complexity
mozilla apple debian CWE-20
5.0
2018-06-11 CVE-2017-5425 Information Exposure vulnerability in Mozilla Firefox and Thunderbird
The Gecko Media Plugin sandbox allows access to local files that match specific regular expressions.
network
low complexity
mozilla apple CWE-200
5.0
2018-06-08 CVE-2018-4250 Improper Input Validation vulnerability in Apple Iphone OS
An issue was discovered in certain Apple products.
network
apple CWE-20
4.3
2018-06-08 CVE-2018-4247 Improper Input Validation vulnerability in Apple Iphone OS and Safari
An issue was discovered in certain Apple products.
network
apple CWE-20
4.3
2018-06-08 CVE-2018-4246 Incorrect Type Conversion or Cast vulnerability in Apple products
An issue was discovered in certain Apple products.
6.8