DescriptionCross-site scripting (XSS) vulnerability in the PDF functionality in WebKit in Apple Safari before 6.2.7, 7.x before 7.1.7, and 8.x before 8.0.7 allows remote attackers to inject arbitrary web script or HTML via a crafted URL in embedded PDF content.
Overall state of this security issue: Resolved
This issue is currently rated as having moderate severity.
|National Vulnerability Database|
SUSE Security Advisories:
- openSUSE-SU-2016:0761-1, published Tue, 15 Mar 2016 13:12:09 +0100 (CET)
SUSE Timeline for this CVECVE page created: Fri Jul 3 08:18:22 2015
CVE page last modified: Fri May 12 11:30:38 2023