Loading...
Loading...
WebCore on Apple Mac OS X 10.3.9 and 10.4.10, as used in Safari, does not properly parse HTML comments in TITLE elements, which allows remote attackers to conduct cross-site scripting (XSS) attacks and bypass some XSS protection schemes by embedding certain HTML tags within an HTML comment.
January 25, 2007
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2007-0478
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.