CVE-2021-30890
Description
A logic issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.0.1, iOS 15.1 and iPadOS 15.1, watchOS 8.1, tvOS 15.1. Processing maliciously crafted web content may lead to universal cross site scripting.
CWE
- (none)
Affected
- Apple / iOS and iPadOS — v=unspecified <15.1 [affected]
- Apple / macOS — v=unspecified <12.0 [affected]
- Apple / macOS — v=unspecified <8.1 [affected]
- Apple / macOS — v=unspecified <15.1 [affected]
CVSS
- (none)
References
- https://support.apple.com/en-us/HT212869 x_refsource_MISC
- https://support.apple.com/en-us/HT212867 x_refsource_MISC
- https://support.apple.com/en-us/HT212874 x_refsource_MISC
- https://support.apple.com/en-us/HT212876 x_refsource_MISC
- http://www.openwall.com/lists/oss-security/2021/12/20/6 mailing-list, x_refsource_MLIST
- https://www.debian.org/security/2021/dsa-5030 vendor-advisory, x_refsource_DEBIAN
- https://www.debian.org/security/2021/dsa-5031 vendor-advisory, x_refsource_DEBIAN
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/7EQVZ3CEMTINLBZ7PBC7WRXVEVCRHNSM/ vendor-advisory, x_refsource_FEDORA
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HQKWD4BXRDD2YGR5AVU7H5J5PIQIEU6V/ vendor-advisory, x_refsource_FEDORA
Source
cvelistV5-main/cves/2021/30xxx/CVE-2021-30890.json