High severity8.8NVD Advisory· Published Dec 18, 2019· Updated Jun 17, 2026
CVE-2019-8792
CVE-2019-8792
Description
An injection issue was addressed with improved validation. This issue is fixed in Shazam Android App Version 9.25.0, Shazam iOS App Version 12.11.0. Processing a maliciously crafted URL may lead to arbitrary javascript code execution.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8cpe:2.3:a:apple:shazam:12.11.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:apple:shazam:12.11.0:*:*:*:*:*:*:*
- cpe:2.3:a:apple:shazam:9.25.0:*:*:*:*:*:*:*
- Range: = 9.25.0
- Range: = 12.11.0
= 9.25.0+ 1 more
- (no CPE)range: = 9.25.0
- (no CPE)range: unspecified
= 12.11.0+ 1 more
- (no CPE)range: = 12.11.0
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
2- support.apple.com/HT210744nvdVendor Advisory
- support.apple.com/HT210745nvdVendor Advisory
News mentions
0No linked articles in our index yet.