299,749
Total vulnerabilities in the database
The CFNetwork Session component in Apple iOS before 8.3 and Apple OS X before 10.10.3 does not properly handle request headers during processing of redirects in HTTP responses, which allows remote attackers to bypass the Same Origin Policy via a crafted web site.
| Software | From | Fixed in |
|---|---|---|
| apple / mac_os_x | - | 10.10.2.x |
| apple / iphone_os | - | 8.2.x |