CVE-2025-53599: XSS
Published Jul 4, 2025
·Updated
Whale browser for iOS before 3.9.1.4206 allow an attacker to execute malicious scripts in the browser via a crafted javascript scheme.
Affected Software
2 affected components
Whale Whale browser<3.9.1.4206
Navercorp Whale Iphone Os<3.9.1.4206
Event History
Jul 4, 2025
CVE Published
via MITRE·07:20 AM
Data Sourced
via MITRE·07:20 AM
DescriptionWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-53599?
CVE-2025-53599 has been classified as a critical vulnerability due to its potential for remote code execution via crafted JavaScript.
2
How do I fix CVE-2025-53599?
To mitigate CVE-2025-53599, users should update the Whale browser to version 3.9.1.4206 or later.
3
What versions of Whale browser are affected by CVE-2025-53599?
Whale browser for iOS versions before 3.9.1.4206 are affected by CVE-2025-53599.
4
What type of attack does CVE-2025-53599 enable?
CVE-2025-53599 enables attackers to execute malicious scripts in the Whale browser using a crafted JavaScript scheme.
5
Is CVE-2025-53599 specific to any operating system?
Yes, CVE-2025-53599 specifically affects the Whale browser on iOS devices.