Medium severity6.1NVD Advisory· Published Apr 1, 2024· Updated Jun 17, 2026
CVE-2024-28895
CVE-2024-28895
Description
'Yahoo! JAPAN' App for Android v2.3.1 to v3.161.1 and 'Yahoo! JAPAN' App for iOS v3.2.2 to v4.109.0 contain a cross-site scripting vulnerability. If this vulnerability is exploited, an arbitrary script may be executed on the WebView of 'Yahoo! JAPAN' App via other app installed on the user's device.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: Android v2.3.1 to v3.161.1, iOS v3.2.2 to v4.109.0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.