Total vulnerabilities in the database
A website running in the InAppBrowser webview on Android could execute arbitrary JavaScript in the main application's webview using a specially crafted gap-iab: URI.
Software | From | Fixed in |
---|---|---|
apache / cordova_inappbrowser | - | 3.0.0.x |
oracle / instantis_enterprisetrack | 17.1 | 17.1.x |
oracle / instantis_enterprisetrack | 17.2 | 17.2.x |
oracle / instantis_enterprisetrack | 17.3 | 17.3.x |
oracle / retail_xstore_point_of_service | 16.0.6 | 16.0.6.x |
oracle / retail_xstore_point_of_service | 17.0.4 | 17.0.4.x |
oracle / retail_xstore_point_of_service | 18.0.3 | 18.0.3.x |
oracle / retail_xstore_point_of_service | 19.0.2 | 19.0.2.x |
![]() |
- | 3.1.0 |