CVE-2019-13607: XSS
Published Jul 18, 2019
·Updated
The Opera Mini application through 16.0.14 for iOS has a UXSS vulnerability that can be triggered by performing navigation to a javascript: URL.
Affected Software
1 affected component
Opera Mini Iphone Os<=16.0.14
Event History
Jul 18, 2019
CVE Published
via MITRE·02:42 PM
Data Sourced
via MITRE·02:42 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2019-13607.
2
What is the severity of CVE-2019-13607?
CVE-2019-13607 has a severity rating of 6.1, which is medium.
3
What is the affected software?
The affected software is Opera Mini application for iOS versions up to and including 16.0.14.
4
How can the UXSS vulnerability be triggered?
The UXSS vulnerability can be triggered by performing navigation to a javascript: URL.
5
Is there any fix available for CVE-2019-13607?
At this time, there is no official fix available for CVE-2019-13607. It is recommended to update to the latest version of Opera Mini and exercise caution when navigating to unknown URLs.