A cross-origin issue existed with the fetch API. This was addressed with improved input validation. This issue is fixed in iOS 12.2, tvOS 12.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. Processing maliciously crafted web content may disclose sensitive user information.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: apple

Published: 2019-12-18T17:33:16

Updated: 2019-12-18T17:33:16

Reserved: 2019-02-18T00:00:00


Link: CVE-2019-8515

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-12-18T18:15:23.473

Modified: 2021-07-21T11:39:23.747


Link: CVE-2019-8515

JSON object: View

cve-icon Redhat Information

No data.

CWE