CVE-2019-8762: XSS
A validation issue was addressed with improved logic. This issue is fixed in Safari 13.0.1, iOS 13.1 and iPadOS 13.1, iCloud for Windows 10.7, tvOS 13, iCloud for Windows 7.14, iTunes 12.10.1 for Windows. Processing maliciously crafted web content may lead to universal cross site scripting.
Other sources
WebKit. A validation issue was addressed with improved logic.
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2019-8747
- CVE-2019-8706
- CVE-2019-8850
- CVE-2019-8753
- CVE-2019-8592
- CVE-2019-8741
- CVE-2019-8705
- CVE-2019-8746
- CVE-2019-8718
- CVE-2019-8703
- CVE-2019-8740
- CVE-2019-8809
- CVE-2019-8712
- CVE-2019-8744
- CVE-2019-8709
- CVE-2019-8717
- CVE-2019-8780
- CVE-2019-8704
- CVE-2019-8749
- CVE-2019-8756
- CVE-2019-8750
- CVE-2019-8799
- CVE-2019-8745
- CVE-2019-8831
- CVE-2019-8625
- CVE-2019-8719
- CVE-2019-8764
- CVE-2019-8707
- CVE-2019-8710
- CVE-2019-8726
- CVE-2019-8728
- CVE-2019-8733
- CVE-2019-8734
- CVE-2019-8735
- CVE-2019-8743
- CVE-2019-8751
- CVE-2019-8752
- CVE-2019-8763
- CVE-2019-8765
- CVE-2019-8766
- CVE-2019-8773
- CVE-2019-8762
- CVE-2020-9932
- CVE-2019-8854
- CVE-2019-8825
- CVE-2019-8654
- CVE-2019-8725
- CVE-2019-8771
- CVE-2019-8774
- CVE-2019-8901
- CVE-2019-8775
- CVE-2019-8769
Frequently Asked Questions
What is CVE-2019-8762?
CVE-2019-8762 is a vulnerability in WebKit that could allow universal cross-site scripting.
What is the severity of CVE-2019-8762?
The severity of CVE-2019-8762 is medium with a CVSS score of 6.1.
How can I fix CVE-2019-8762?
To fix CVE-2019-8762, update to the following versions: Safari 13.0.1, iOS 13.1 and iPadOS 13.1, iCloud for Windows 10.7, tvOS 13, iCloud for Windows 7.14, or iTunes 12.10.1 for Windows.
Where can I find more information about CVE-2019-8762?
You can find more information about CVE-2019-8762 on the Apple support page: [https://support.apple.com/en-us/HT210603](https://support.apple.com/en-us/HT210603), [https://support.apple.com/en-us/HT210604](https://support.apple.com/en-us/HT210604), [https://support.apple.com/en-us/HT210605](https://support.apple.com/en-us/HT210605).
What is the CWE ID for CVE-2019-8762?
The CWE ID for CVE-2019-8762 is CWE-79.