Apache Cordova iOS versions 3.9.1 and below suffer from an access bypass vulnerability.
fae203a05fc5e593cedf2d62a055f9b7f81ada5058f60301bd2b9a2abe342180
Apache Cordova iOS versions 3.9.1 and below allow for arbitrary plugin execution.
fefb824e808b4133ebdf4a6c2f3d50502a18ea0647eef7619d23119976a4004b
Android applications created using Apache Cordova that use a remote server contain a vulnerability where whitelist restrictions are not properly applied. Improperly crafted URIs could be used to circumvent the whitelist, allowing for the execution of non-whitelisted Javascript. Versions 3.7.2 and below are affected.
468458d33746c0862b6ee47045cc0b4a5cc12550b39e5ec7f6aa2a3a16cc6bd8
Apache Cordova Android File Transfer plugin versions 1.2.1 and below suffer from an HTTP header injection vulnerability.
1c678a1c4f57462b9c536f091f42eac61d776820a65cd8bd687da721e960449a