CVE-2019-8813: XSS
A logic issue was addressed with improved state management. This issue is fixed in iOS 13.2 and iPadOS 13.2, tvOS 13.2, Safari 13.0.3, iTunes for Windows 12.10.2, iCloud for Windows 11.0. Processing maliciously crafted web content may lead to universal cross site scripting.
Other sources
WebKit. A logic issue was addressed with improved state management.
WebKitGTK Security Advisory WSA-2019-0006 describes the following issue:
CVE-2019-8813
Impact: Processing maliciously crafted web content may lead to universal cross site scripting. Description: A logic issue was addressed with improved state management.
Versions affected: WebKitGTK before 2.26.1 and WPE WebKit before 2.26.1.
— Red Hat
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2019-8787
- CVE-2019-8803
- CVE-2019-8785
- CVE-2019-8797
- CVE-2019-8795
- CVE-2019-8798
- CVE-2019-8794
- CVE-2019-8786
- CVE-2019-8829
- CVE-2019-8813
- CVE-2019-8782
- CVE-2019-8783
- CVE-2019-8808
- CVE-2019-8811
- CVE-2019-8812
- CVE-2019-8814
- CVE-2019-8816
- CVE-2019-8819
- CVE-2019-8820
- CVE-2019-8821
- CVE-2019-8822
- CVE-2019-8823
- CVE-2019-8827
- CVE-2019-8815
- CVE-2019-8784
- CVE-2019-8801
- CVE-2019-8796
- CVE-2019-8788
- CVE-2019-8789
- CVE-2017-7152
- CVE-2019-8804
- CVE-2019-8793
- CVE-2019-15126
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-8813.
What is the severity rating of CVE-2019-8813?
The severity rating of CVE-2019-8813 is medium.
What software versions are affected by CVE-2019-8813?
iOS versions up to 13.2, iPadOS versions up to 13.2, tvOS versions up to 13.2, Safari versions up to 13.0.3, iTunes for Windows versions up to 12.10.2, and iCloud for Windows versions up to 10.8 are affected by CVE-2019-8813.
What is the remediation for CVE-2019-8813?
To fix CVE-2019-8813, update to iOS 13.2 or later, iPadOS 13.2 or later, tvOS 13.2 or later, Safari 13.0.3 or later, iTunes for Windows 12.10.2 or later, or iCloud for Windows 11.0 or later.
What is the CWE ID for CVE-2019-8813?
The CWE ID for CVE-2019-8813 is 79.