CVE-2020-9857 PUBLISHED CVSS 4.300000190734863 MEDIUM

An issue existed in the parsing of URLs. This issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.5, Security Update 2020-003 Mojave, Security Update 2020-003 High Sierra. A malicious website may be able to exfiltrate autofilled data in Safari.

EPSS 0.25% · 48.2th percentile

Risk Scores

CVSS v3.1
4.300000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
EPSS Score
0.25%
48.2th percentile

Affected Products

VendorProductVersions
ApplemacOSunspecified
applemac_os_x0

Timeline

References

Open in Interactive Console →