CVE-2017-7059
MEDIUMApple - XSS
Title source: llmDescription
A DOMParser XSS issue was discovered in certain Apple products. iOS before 10.3.3 is affected. Safari before 10.1.2 is affected. tvOS before 10.2.2 is affected. The issue involves the "WebKit" component.
References (5)
Scores
CVSS v3
6.1
EPSS
0.0049
EPSS Percentile
65.3%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Details
CWE
CWE-79
Status
published
Products (4)
apple/safari
< 10.1.2
apple/iphone_os
< 10.3.3
apple/tvos
< 10.2.2
n/a/n/a
Published
Jul 20, 2017
Tracked Since
Feb 18, 2026