Vulnerabilities > Apple > Safari > Low

DATE CVE VULNERABILITY TITLE RISK
2024-01-23 CVE-2024-23211 Unspecified vulnerability in Apple products
A privacy issue was addressed with improved handling of user preferences.
local
low complexity
apple
3.3
2020-10-16 CVE-2020-9912 Unspecified vulnerability in Apple Safari
A logic issue was addressed with improved restrictions.
local
low complexity
apple
3.3
2020-04-01 CVE-2020-3894 Race Condition vulnerability in Apple products
A race condition was addressed with additional validation.
network
high complexity
apple CWE-362
3.1
2016-09-25 CVE-2016-4751 7PK - Security Features vulnerability in Apple Safari
The Safari Tabs component in Apple Safari before 10 allows remote attackers to spoof the address bar of a tab via a crafted web site.
network
low complexity
apple CWE-254
3.5
2016-05-20 CVE-2016-1849 Information Exposure vulnerability in Apple Safari
The "Clear History and Website Data" feature in Apple Safari before 9.1.1, as used in iOS before 9.3.2 and other products, mishandles the deletion of browsing history, which might allow local users to obtain sensitive information by leveraging read access to a Safari directory.
local
low complexity
apple CWE-200
3.3
2015-05-21 CVE-2015-4000 Cryptographic Issues vulnerability in multiple products
The TLS protocol 1.2 and earlier, when a DHE_EXPORT ciphersuite is enabled on a server but not on a client, does not properly convey a DHE_EXPORT choice, which allows man-in-the-middle attackers to conduct cipher-downgrade attacks by rewriting a ClientHello with DHE replaced by DHE_EXPORT and then rewriting a ServerHello with DHE_EXPORT replaced by DHE, aka the "Logjam" issue.
3.7