We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2024-28895



Assignerjpcert
Reserved2024-03-13
Published2024-04-01
Updated2024-11-06

Description

'Yahoo! JAPAN' App for Android v2.3.1 to v3.161.1 and 'Yahoo! JAPAN' App for iOS v3.2.2 to v4.109.0 contain a cross-site scripting vulnerability. If this vulnerability is exploited, an arbitrary script may be executed on the WebView of 'Yahoo! JAPAN' App via other app installed on the user's device.

Product status

v2.3.1 to v3.161.1
affected

v3.2.2 to v4.109.0
affected

References

https://jvn.jp/en/jp/JVN23528780/

cve.org CVE-2024-28895

nvd.nist.gov CVE-2024-28895

Download JSON

Share this page
https://cve.threatint.com
Subscribe to our newsletter to learn more about our work.