A UXSS was discovered in the Thanos-Soft Cheetah Browser in Android 1.2.0 due to the inadequate filter of the intent scheme. This resulted in Cross-site scripting on the cheetah browser in any website.
References
Link | Resource |
---|---|
https://medium.com/@kunal94/indirect-uxss-issues-on-a-private-integrated-browser-219f6b809b6c | Exploit Third Party Advisory |
Configurations
Information
Published : 2021-04-13 15:15
Updated : 2021-04-23 07:26
NVD link : CVE-2021-29370
Mitre link : CVE-2021-29370
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
cheetah_browser_project
- cheetah_browser