CVE-2015-1127
The private-browsing implementation in WebKit in Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5 places browsing history into an index, which might allow local users to obtain sensitive information by reading index entries.
- Apple Safari
- ≤ 6.2.4, 7.0, 7.0.1, 7.0.2, 7.0.3, 7.0.4, 7.0.5, 7.0.6, 7.1.0, 7.1.1, 7.1.2, 7.1.3, 7.1.4, 8.0.0, 8.0.1, 8.0.2, 8.0.3, 8.0.4
- Fix
- Available
- CVSS 2.0
- 2.1 LOW
- EPSS
- 0.4% (29th percentile)
- Weakness
- CWE-200
- NVD status
- Modified
- Published
- 2015-04-10
CVE-2015-1127 at NVD
No indexed exploits for CVE-2015-1127 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2015-1127 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.