Alerts
Events
DCR
Explore Cyware Products
Alerts
Events
DCR
Go to listing page
Safari XSS Vulnerability Exploits JavaScript TypeError Handling for Arbitrary Code Execution
Malware and Vulnerabilities
June 03, 2025
thespanner
A novel cross-site scripting (XSS) technique has been identified in Safari that leverages JavaScript TypeError messages to execute arbitrary code. This method exploits Safari’s failure to escape embedded quotes in error messages.
Read More
Safari Browser
Cross Site Scripting
JavaScript TypeError
XSS exploit
Onerror Handler
Publisher
Previous
Multiple Vulnerabilities in SAP GuiXT Scripting
Malware and Vulnerabilities
Next
Lost in Resolution: Azure OpenAI's DNS Resolution Issue
Malware and Vulnerabilities