CVE-2020-9860: Input Validation
A custom URL scheme handling issue was addressed with improved input validation. This issue is fixed in Safari 13.0.5. Processing a maliciously crafted URL may lead to arbitrary javascript code execution.
Other sources
Safari. A custom URL scheme handling issue was addressed with improved input validation.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2020-9860?
CVE-2020-9860 is a vulnerability in Safari that involves a custom URL scheme handling issue that has been addressed with improved input validation.
Which software is affected by CVE-2020-9860?
Apple Safari version up to 13.0.5 is affected by CVE-2020-9860.
How can I fix CVE-2020-9860?
To fix CVE-2020-9860, you should update your Apple Safari software to version 13.0.5 or higher.
What is the severity of CVE-2020-9860?
The severity of CVE-2020-9860 is not mentioned in the provided information.
Where can I find more information about CVE-2020-9860?
You can find more information about CVE-2020-9860 on the Apple support website.