A logic issue existed in the handling of synchronous page loads. This issue was addressed with improved state management. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to universal cross site scripting.
                
            Metrics
Affected Vendors & Products
References
        History
                    No history.
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: apple
Published: 2019-12-18T17:33:20
Updated: 2024-08-04T21:24:29.499Z
Reserved: 2019-02-18T00:00:00
Link: CVE-2019-8649
 Vulnrichment
                        Vulnrichment
                    No data.
 NVD
                        NVD
                    Status : Modified
Published: 2019-12-18T18:15:31.257
Modified: 2024-11-21T04:50:14.160
Link: CVE-2019-8649
 Redhat
                        Redhat