Vulnerability Description
This issue was addressed with improved iframe sandbox enforcement. This issue is fixed in Safari 13.0.1, iOS 13. Maliciously crafted web content may violate iframe sandboxing policy.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apple | Safari | < 13.0.1 |
| Apple | Iphone Os | < 13.0. |
Related Weaknesses (CWE)
References
- https://support.apple.com/en-us/HT210605Vendor Advisory
- https://support.apple.com/en-us/HT210606Vendor Advisory
- https://support.apple.com/en-us/HT210605Vendor Advisory
- https://support.apple.com/en-us/HT210606Vendor Advisory
FAQ
What is CVE-2019-8771?
CVE-2019-8771 is a vulnerability with a CVSS score of 6.1 (MEDIUM). This issue was addressed with improved iframe sandbox enforcement. This issue is fixed in Safari 13.0.1, iOS 13. Maliciously crafted web content may violate iframe sandboxing policy.
How severe is CVE-2019-8771?
CVE-2019-8771 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-8771?
Check the references section above for vendor advisories and patch information. Affected products include: Apple Safari, Apple Iphone Os.