CVE-2008-1025
Apple Safari - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in Apple WebKit, as used in Safari before 3.1.1, allows remote attackers to inject arbitrary web script or HTML via a crafted URL with a colon in the hostname portion.
References (11)
Scores
EPSS
0.0097
EPSS Percentile
76.4%
Classification
CWE
CWE-79
Status
draft
Affected Products (18)
apple/safari
apple/safari
apple/safari
apple/safari
apple/safari
apple/safari
apple/safari
apple/safari
apple/safari
apple/safari
apple/safari
apple/safari
apple/safari
apple/safari
apple/safari
... and 3 more
Timeline
Published
Apr 17, 2008
Tracked Since
Feb 18, 2026