Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Milan Crha

Researcher fromRed Hat
#22627of 53,633
10Total CVSS
Vulnerabilities · 1
PT-2020-13656
10
2020-07-09
Apple · Wpe Webkit · CVE-2020-13753
**Name of the Vulnerable Software and Affected Versions** WebKitGTK versions prior to 2.28.3 WPE WebKit versions prior to 2.28.3 **Description** The issue is related to the bubblewrap sandbox in WebKitGTK and WPE WebKit, which failed to properly block access to certain features. This could potentially allow access outside the sandbox, including the possibility of directly executing commands by writing to the controlling terminal's input buffer. **Recommendations** For WebKitGTK versions prior to 2.28.3, update to version 2.28.3 or later. For WPE WebKit versions prior to 2.28.3, update to version 2.28.3 or later.