CVE-2019-8719: XSS
A logic issue was addressed with improved state management. This issue is fixed in tvOS 13, iTunes for Windows 12.10.1, iCloud for Windows 10.7, iCloud for Windows 7.14. Processing maliciously crafted web content may lead to universal cross site scripting.
Other sources
WebKit. A logic issue was addressed with improved state management.
WebKitGTK Security Advisory WSA-2019-0005 describes the following issue:
CVE-2019-8719
Impact: Processing maliciously crafted web content may lead to universal cross site scripting. Description: A logic issue was addressed with improved state management.
Versions affected: WebKitGTK before 2.24.4 and WPE WebKit before 2.24.3.
— Red Hat
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2019-8747
- CVE-2019-8706
- CVE-2019-8850
- CVE-2019-8753
- CVE-2019-8592
- CVE-2019-8741
- CVE-2019-8705
- CVE-2019-8746
- CVE-2019-8718
- CVE-2019-8703
- CVE-2019-8740
- CVE-2019-8809
- CVE-2019-8712
- CVE-2019-8744
- CVE-2019-8709
- CVE-2019-8717
- CVE-2019-8780
- CVE-2019-8704
- CVE-2019-8749
- CVE-2019-8756
- CVE-2019-8750
- CVE-2019-8799
- CVE-2019-8745
- CVE-2019-8831
- CVE-2019-8625
- CVE-2019-8719
- CVE-2019-8764
- CVE-2019-8707
- CVE-2019-8710
- CVE-2019-8726
- CVE-2019-8728
- CVE-2019-8733
- CVE-2019-8734
- CVE-2019-8735
- CVE-2019-8743
- CVE-2019-8751
- CVE-2019-8752
- CVE-2019-8763
- CVE-2019-8765
- CVE-2019-8766
- CVE-2019-8773
- CVE-2019-8762
- CVE-2020-9932
- CVE-2019-8854
- CVE-2019-8825
- CVE-2019-8674
- CVE-2019-8711
- CVE-2019-8732
- CVE-2019-8760
- CVE-2019-8641
- CVE-2019-8742
- CVE-2019-8730
- CVE-2019-8708
- CVE-2019-8715
- CVE-2019-8731
- CVE-2019-8727
- CVE-2019-8771
- CVE-2019-8768
Frequently Asked Questions
What is CVE-2019-8719?
CVE-2019-8719 is a logic issue in WebKit that was addressed with improved state management.
What is the severity of CVE-2019-8719?
The severity of CVE-2019-8719 is medium, with a CVSS score of 6.1.
Which software versions are affected by CVE-2019-8719?
CVE-2019-8719 affects the following software versions: Apple iTunes for Windows up to version 12.10.1, iCloud for Windows up to version 7.14, Safari up to version 13, and WebKitGTK+ up to version 2.26.4.
How can I fix CVE-2019-8719?
To fix CVE-2019-8719, update to the latest versions of affected software: Apple iTunes for Windows 12.10.1, iCloud for Windows 7.14, Safari 13, and WebKitGTK+ 2.26.4.
What is the impact of CVE-2019-8719?
Processing maliciously crafted web content may lead to universal cross site scripting.