CVE-2019-18426

WhatsApp Cross-Site Scripting Vulnerability

8.2
CVSS 3.1
67.9 %
EPSS (current)
2022-05-23
KEV addition
No
Ransomware

Timeline

Publication, first public exploit and KEV addition on a day axis.

Key facts

Vendor / product: Meta Platforms / WhatsApp

Published: 2020-01-21 · Due (CISA): 2022-06-13

CWE: CWE-79 · EU list: no

Exploit references (metadata only)

SourceReferenceTitleDate
exploitdb48295WhatsApp Desktop 0.3.9308 - Persistent Cross-Site Scripting2020-04-06

References only — no downloads or instructions.

Sources