Universal Cross-Site Scripting Vulnerability in WithSecure SAFE Browser Protection for Android
A vulnerability affecting WithSecure SAFE browser protection was discovered improper URL handling can be triggered to cause universal cross-site scripting through browsing protection in a SAFE web browser. User interaction is required prior to exploitation. A successful exploitation may lead to arbitrary code execution.
This issue was reported to WithSecure through the Vulnerability Reward Program. No known exploit or attack has been seen in the wild.
WithSecure Corporation would like to thank following person for bringing this issue to our attention.