CVE-2020-9952: Input Validation
A flaw was found in WebKitGTK. An input validation issue was addressed with improved input validation. Processing maliciously crafted web content may lead to a cross site scripting attack.
Reference: https://webkitgtk.org/security/WSA-2020-0008.html
Other sources
An input validation issue was addressed with improved input validation. This issue is fixed in iOS 14.0 and iPadOS 14.0, tvOS 14.0, watchOS 7.0, Safari 14.0, iCloud for Windows 11.4, iCloud for Windows 7.21. Processing maliciously crafted web content may lead to a cross site scripting attack.
— Launchpad
WebKit. An input validation issue was addressed with improved input validation.
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2020-9979
- CVE-2020-9943
- CVE-2020-9944
- CVE-2020-9960
- CVE-2020-9954
- CVE-2020-9949
- CVE-2020-9999
- CVE-2020-9965
- CVE-2020-9966
- CVE-2020-29629
- CVE-2020-9956
- CVE-2020-9962
- CVE-2020-27931
- CVE-2020-29639
- CVE-2020-9978
- CVE-2020-36521
- CVE-2020-9961
- CVE-2020-9955
- CVE-2020-9876
- CVE-2020-9967
- CVE-2020-9975
- CVE-2020-9976
- CVE-2020-9981
- CVE-2020-9971
- CVE-2020-9969
- CVE-2020-9968
- CVE-2020-13434
- CVE-2020-13435
- CVE-2020-9991
- CVE-2020-15358
- CVE-2020-13631
- CVE-2020-9849
- CVE-2020-13630
- CVE-2020-9947
- CVE-2020-9950
- CVE-2020-9951
- CVE-2020-9983
- CVE-2020-9952
- CVE-2020-10013
- CVE-2020-9941
- CVE-2020-9989
- CVE-2020-9946
- CVE-2020-9993
- CVE-2020-9987
- CVE-2020-9948
- CVE-2020-9958
- CVE-2020-9773
- CVE-2020-9992
- CVE-2020-9964
- CVE-2019-14899
- CVE-2020-9988
- CVE-2020-13520
- CVE-2020-6147
- CVE-2020-9972
- CVE-2020-9973
- CVE-2020-9996
- CVE-2020-9963
- CVE-2020-9977
- CVE-2020-9959
Frequently Asked Questions
What is CVE-2020-9952?
CVE-2020-9952 is an input validation issue in WebKit that has been addressed with improved input validation.
Which software products are affected by CVE-2020-9952?
CVE-2020-9952 affects Apple tvOS, Apple Safari, Apple iOS, Apple iPadOS, Apple watchOS, and Apple iCloud for Windows.
What is the severity of CVE-2020-9952?
The severity of CVE-2020-9952 has not been specified.
How can I fix CVE-2020-9952?
To fix CVE-2020-9952, update your software to the latest version provided by Apple.
Where can I find more information about CVE-2020-9952?
You can find more information about CVE-2020-9952 on the Apple support website.