Vulnerabilities > Apple > Webkit > r56188

DATE CVE VULNERABILITY TITLE RISK
2010-08-19 CVE-2010-1760 Credentials Management vulnerability in Apple Webkit
loader/DocumentThreadableLoader.cpp in the XMLHttpRequest implementation in WebCore in WebKit before r58409 does not properly handle credentials during a cross-origin synchronous request, which has unspecified impact and remote attack vectors, aka rdar problem 7905150.
network
low complexity
apple CWE-255
critical
10.0