Vulnerabilities > Apple > Safari > High

DATE CVE VULNERABILITY TITLE RISK
2020-10-16 CVE-2020-9910 Unspecified vulnerability in Apple products
Multiple issues were addressed with improved logic.
network
low complexity
apple
8.8
2020-10-16 CVE-2020-9903 Origin Validation Error vulnerability in Apple Iphone OS
A logic issue was addressed with improved restrictions.
network
low complexity
apple CWE-346
7.5
2020-10-16 CVE-2020-9893 Use After Free vulnerability in Apple products
A use after free issue was addressed with improved memory management.
network
low complexity
apple CWE-416
8.8
2020-10-16 CVE-2020-9862 Improper Encoding or Escaping of Output vulnerability in Apple products
A command injection issue existed in Web Inspector.
local
low complexity
apple CWE-116
7.8
2020-06-09 CVE-2020-9843 Cross-site Scripting vulnerability in Apple products
An input validation issue was addressed with improved input validation.
network
low complexity
apple CWE-79
7.1
2020-06-09 CVE-2020-9805 Cross-site Scripting vulnerability in Apple products
A logic issue was addressed with improved restrictions.
network
low complexity
apple CWE-79
7.1
2020-06-09 CVE-2020-9802 Unspecified vulnerability in Apple products
A logic issue was addressed with improved restrictions.
network
low complexity
apple
8.8
2020-06-09 CVE-2020-9800 Type Confusion vulnerability in Apple products
A type confusion issue was addressed with improved memory handling.
network
low complexity
apple CWE-843
8.8
2019-01-11 CVE-2018-4262 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
In Safari before 11.1.2, iTunes before 12.8 for Windows, iOS before 11.4.1, tvOS before 11.4.1, iCloud for Windows before 7.6, multiple memory corruption issues were addressed with improved memory handling.
network
low complexity
apple canonical CWE-119
8.8
2019-01-11 CVE-2018-4213 Improper Input Validation vulnerability in multiple products
In iOS before 11.3, Safari before 11.1, iCloud for Windows before 7.4, tvOS before 11.3, watchOS before 4.3, iTunes before 12.7.4 for Windows, unexpected interaction causes an ASSERT failure.
network
low complexity
apple canonical webkitgtk CWE-20
8.8