Yappli is an application development platform which provides the function to access a requested URL using Custom URL Scheme. When Android apps are developed with Yappli versions since v7.3.6 and prior to v9.30.0, they are vulnerable to improper authorization in Custom URL Scheme handler, and may be directed to unintended sites via a specially crafted URL.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: jpcert
Published: 2021-12-28T01:30:12
Updated: 2024-08-03T17:53:23.086Z
Reserved: 2020-12-17T00:00:00
Link: CVE-2021-20873
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-12-28T02:15:06.907
Modified: 2024-11-21T05:47:19.630
Link: CVE-2021-20873
Redhat
No data.