Subscribe via feed.
Archive for May, 2017

WebKit Patch #1110 Universal Cross Site Scripting

Posted by deepcore under exploit (No Respond)

The WebKit #1110 patch created a universal cross site scripting vulnerability.

WebKit ContainerNode::parserRemoveChild (2) Universal Cross Site Scripting

Posted by deepcore under exploit (No Respond)

WebKit suffers from a universal cross site scripting vulnerability via ContainerNode::parserRemoveChild (2).

WebKit JSC BindingNode::bindValue Failed Reference Count Increase

Posted by deepcore under exploit (No Respond)

WebKit JSC fails to increase the reference count in BindingNode::bindValue.

Skia Graphics Library Heap Overflow

Posted by deepcore under exploit (No Respond)

Skia Graphic Library suffers from a heap overflow vulnerability.

Mozilla Firefox gfxTextRun Out-Of-Bounds Read

Posted by deepcore under exploit (No Respond)

gfxTextRun in Mozilla Firefox suffers from a heap overflow vulnerability.

WebKit WebCore::FrameView::scheduleRelayout Use-After-Free

Posted by deepcore under exploit (No Respond)

WebKit suffers from a use-after-free vulnerability in WebCore::FrameView::scheduleRelayout.

WebKit HTMLObjectElement::updateWidget Universal XSS

Posted by deepcore under exploit (No Respond)

WebKit suffers from a cross site scripting vulnerability in HTMLObjectElement::updateWidget.

WebKit FrameLoader::clear Variable Theft

Posted by deepcore under exploit (No Respond)

WebKit suffers from a variable theft issue in FrameLoader::clear via page navigation.

Mozilla Firefox ConvolvePixel Memory Disclosure

Posted by deepcore under exploit (No Respond)

Mozilla Firefox suffers from a memory disclosure vulnerability in ConvolvPixel. o.

WebKit enqueuePageshowEvent / enqueuePopstateEvent Universal XSS

Posted by deepcore under exploit (No Respond)

WebKit enqueuePageshowEvent and enqueuePopstateEvent suffer from a universal cross site scripting vulnerability.