cve/2024/CVE-2024-0606.md
2025-09-29 16:08:36 +00:00

781 B

CVE-2024-0606

Description

An attacker could execute unauthorized script on a legitimate site through UXSS using window.open() by opening a javascript URI leading to unauthorized actions within the user's loaded webpage. This vulnerability affects Focus for iOS < 122.

POC

Reference

Github

No PoCs found on GitHub currently.