High severity8.8NVD Advisory· Published Apr 2, 2017· Updated May 13, 2026
CVE-2017-2378
CVE-2017-2378
Description
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. The issue involves bookmark creation in the "WebKit" component. It allows remote attackers to execute arbitrary code or spoof a bookmark by leveraging mishandling of links during drag-and-drop actions.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- www.securityfocus.com/bid/97129nvdThird Party AdvisoryVDB Entry
- support.apple.com/HT207600nvdVendor Advisory
- support.apple.com/HT207617nvdVendor Advisory
- www.securitytracker.com/id/1038137nvd
News mentions
0No linked articles in our index yet.