Medium CVSS 6.5 webkit Logic Error

Overview

Medium
Severity
6.5
CVSS
No
Exploited ITW
Embargoed
Fix Status
DescriptionVisiting a malicious website may lead to address bar spoofing
ComponentWebKit
Bug ClassLogic Error
Tracker279451
CVSS vectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
CISA KEVNot listed
CreditedHafiizh and YoKo Kho (@yokoacc) of HakTrak
Disclosed2024-09-16

Fix not yet public

No public source fix for this bug has been identified on the main branch yet — it is embargoed or not yet disclosed. Root-cause analysis is withheld until the fix commit is available.

Original Bug Report

The reporter's bug is still restricted on the tracker.