Skip to content

CVE-2020-9857

MEDIUM  |  Platform: macOS  |  Changelog

CVE Details

Description

An issue existed in the parsing of URLs. This issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.5, Security Update 2020-003 Mojave, Security Update 2020-003 High Sierra. A malicious website may be able to exfiltrate autofilled data in Safari.

CVSS 3.1 Score

MetricValue
Base Score4.3 (MEDIUM)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N

References