Vulnerability index

Browse CVEs

69 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-site Scripting (XSS)CWE-79 × clear
Safari MEDIUM 6.1
CVE-2017-2445

An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS before 10.2 is affected. The iss…

Fix: after 10.2.1
Fix from $1,600 2017-04-02
Iphone Os MEDIUM 6.1
CVE-2017-2393

An issue was discovered in certain Apple products. iOS before 10.3 is affected. The issue involves the "Safari Reader" component. It allows remote at…

Fix: after 10.2.1
Fix from $1,600 2017-04-02
Mac Os X MEDIUM 6.1
CVE-2017-2361EPSS 17%

An issue was discovered in certain Apple products. macOS before 10.12.3 is affected. The issue involves the "Help Viewer" component, which allows XSS…

Fix: after 10.12.2
Fix from $1,600 2017-02-20
Iphone Os MEDIUM 6.1
CVE-2016-7762

An issue was discovered in certain Apple products. iOS before 10.2 is affected. The issue involves the "WebKit" component, which allows XSS attacks a…

Fix: after 10.1.1
Fix from $1,600 2017-02-20
Safari MEDIUM 6.1
CVE-2016-4618

Cross-site scripting (XSS) vulnerability in Safari Reader in Apple iOS before 10 and Safari before 10 allows remote attackers to inject arbitrary web…

Fix: after 9.3.5
Fix from $1,600 2016-09-25
Safari MEDIUM 6.1
CVE-2016-4651

Cross-site scripting (XSS) vulnerability in the WebKit JavaScript bindings in Apple iOS before 9.3.3 and Safari before 9.1.2 allows remote attackers …

Fix: after 9.3.2
Fix from $1,600 2016-07-22
Webkit MEDIUM 6.1
CVE-2016-4585

Cross-site scripting (XSS) vulnerability in the WebKit Page Loading implementation in Apple iOS before 9.3.3, Safari before 9.1.2, and tvOS before 9.…

No fix yet
Fix from $1,600 2016-07-22
Os X Server MEDIUM 6.1
CVE-2014-4406

Cross-site scripting (XSS) vulnerability in Xcode Server in CoreCollaboration in Apple OS X Server before 3.2.1 allows remote attackers to inject arb…

Fix: after 3.1.2
Fix from $1,600 2014-09-19
Safari HIGH 7.8
CVE-2007-3482

Cross-domain vulnerability in Apple Safari for Windows 3.0.1 allows remote attackers to bypass the "same origin policy" and access restricted informa…

Mitigation only
Fix from $1,950 2007-06-28