Apple

Safari

1536 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.66%
  • Published 23.10.2015 21:59:46
  • Last modified 12.04.2025 10:46:40

WebKit, as used in Apple Safari before 9.0.1 and iTunes before 12.3.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than oth...

  • EPSS 1.01%
  • Published 23.10.2015 21:59:39
  • Last modified 12.04.2025 10:46:40

WebKit, as used in Apple iOS before 9.1, Safari before 9.0.1, and iTunes before 12.3.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulne...

  • EPSS 1.53%
  • Published 23.10.2015 21:59:08
  • Last modified 12.04.2025 10:46:40

WebKit, as used in Apple Safari before 9.0.1 and iTunes before 12.3.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than oth...

  • EPSS 1.08%
  • Published 23.10.2015 21:59:07
  • Last modified 12.04.2025 10:46:40

WebKit, as used in Apple iOS before 9.1, Safari before 9.0.1, and iTunes before 12.3.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulne...

  • EPSS 1.08%
  • Published 23.10.2015 21:59:06
  • Last modified 12.04.2025 10:46:40

WebKit, as used in Apple iOS before 9.1, Safari before 9.0.1, and iTunes before 12.3.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulne...

  • EPSS 1.01%
  • Published 23.10.2015 21:59:04
  • Last modified 12.04.2025 10:46:40

WebKit, as used in Apple iOS before 9.1, Safari before 9.0.1, and iTunes before 12.3.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulne...

  • EPSS 0.78%
  • Published 09.10.2015 05:59:02
  • Last modified 12.04.2025 10:46:40

The API in the WebKit Plug-ins component in Apple Safari before 9 does not provide notification of an HTTP Redirection (aka 3xx) status code to a plugin, which allows remote attackers to bypass intended request restrictions via a crafted web site.

  • EPSS 0.63%
  • Published 09.10.2015 05:59:01
  • Last modified 12.04.2025 10:46:40

The Safari Extensions implementation in Apple Safari before 9 does not require user confirmation before replacing an installed extension, which has unspecified impact and attack vectors.

  • EPSS 0.44%
  • Published 18.09.2015 10:59:46
  • Last modified 12.04.2025 10:46:40

WebKit in Apple iOS before 9 allows remote attackers to bypass the Same Origin Policy and obtain an object reference via vectors involving a (1) custom event, (2) message event, or (3) pop state event.

  • EPSS 0.66%
  • Published 18.09.2015 10:59:45
  • Last modified 12.04.2025 10:46:40

WebKit in Apple iOS before 9 does not properly select the cases in which a Cascading Style Sheets (CSS) document is required to have the text/css content type, which allows remote attackers to bypass the Same Origin Policy via a crafted web site.