CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 10.0. It may be remotely exploitable.
CVE
CVE-2010-1760
Severity
HIGH
CVSS
10
EPSS
2.64%
Original NVD Description
loader/DocumentThreadableLoader.cpp in the XMLHttpRequest implementation in WebCore in WebKit before r58409 does not properly handle credentials during a cross-origin synchronous request, which has unspecified impact and remote attack vectors, aka rdar problem 7905150.