Total vulnerabilities in the database
The CFNetwork HTTPProtocol component in Apple iOS before 9 mishandles HSTS state, which allows remote attackers to bypass the Safari private-browsing protection mechanism and track users via a crafted web site.
Software | From | Fixed in |
---|---|---|
apple / iphone_os | - | 8.4.1.x |
apple / watchos | 1.0 | 1.0.x |