296,746
Total vulnerabilities in the database
The CFNetwork HTTPProtocol component in Apple iOS before 9 mishandles HSTS state, which allows remote attackers to bypass the Safari private-browsing protection mechanism and track users via a crafted web site.
| Software | From | Fixed in |
|---|---|---|
| apple / iphone_os | - | 8.4.1.x |
| apple / watchos | 1.0 | 1.0.x |