A logic issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.3, Safari 15.4, watchOS 8.5, iOS 15.4 and iPadOS 15.4, tvOS 15.4. A malicious website may cause unexpected cross-origin behavior.
2022-09-23T19:15:11.267
2025-05-22T16:15:51.793
Modified
CVSSv3.1: 8.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | apple | safari | < 15.4 | Yes |
Operating System | apple | ipad_os | < 15.4 | Yes |
Operating System | apple | iphone_os | < 15.4 | Yes |
Operating System | apple | macos | < 12.3 | Yes |
Operating System | apple | tvos | < 15.4 | Yes |
Operating System | apple | watchos | < 8.5 | Yes |