CVE-2013-1013: Apple Safari
Medium severity, CVSS 4.3. EPSS: 1.4% chance of exploitation in the next 30 days.
XSS Auditor in WebKit in Apple Safari before 6.0.5 does not properly rewrite URLs, which allows remote attackers to trigger unintended form submissions via unspecified vectors.
Affected products
- Apple Safari: up to and including 6.0.4; version 6.0 only; version 6.0.1 only; version 6.0.2 only; version 6.0.3 only
Published 2013-06-05. Last modified 2026-06-16.