First published: Tue Sep 24 2019(Updated: )
An inconsistent user interface issue was addressed with improved state management. This issue is fixed in Safari 13.0.1. Visiting a malicious website may lead to user interface spoofing.
Credit: product-security@apple.com Juno Im @junorouse Theori
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Safari | <13.0.1 | |
Apple Safari | <13.0.1 | 13.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2019-8654 is a vulnerability in Safari that allows user interface spoofing when visiting a malicious website.
CVE-2019-8654 affects Safari versions up to and including 13.0.1.
CVE-2019-8654 has a severity rating of 6.5 (medium).
To fix CVE-2019-8654, update Safari to version 13.0.1 or later.
More information about CVE-2019-8654 can be found on the Apple support website at [https://support.apple.com/en-us/HT210605](https://support.apple.com/en-us/HT210605) and [https://support.apple.com/HT210605](https://support.apple.com/HT210605).