Line 5:
Line 5:
! Summary
! Summary
! Description
! Description
−
! Fixed with software update
+
! Fixed with system version
−
! Newest software update this flaw was checked for
+
! Newest system version this flaw was checked for
! Timeframe this was discovered
! Timeframe this was discovered
! Discovered by
! Discovered by
Line 38:
Line 38:
|
|
| Everyone
| Everyone
+
|}
+
+
=== Whitelist ===
+
This section documents [[Internet_Browser|WebApplet]] whitelist issues in applications. These can be used to load your own browser content over plain HTTP, which then for example could be used for web-applet exploitation.
+
+
{| class="wikitable" border="1"
+
! Application
+
! Description
+
! Fixed with app version
+
! Newest app version this flaw was checked for
+
! Timeframe this was discovered
+
! Public disclosure timeframe
+
! Discovered by
+
|-
+
| Sonic Mania
+
| Originally this game launched web-applet with a plain-http URL for displaying the manual, this was later changed to https. Originally the whitelist only had 1 entry for a http URL, this was later replaced with various https-only URLs.
+
| 1.04, unknown if fixed with an earlier update
+
| 1.04
+
| January (?) 2022
+
| February 23, 2022
+
| [[User:Yellows8|yellows8]]
|}
|}