Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-40451


This issue was addressed with improved iframe sandbox enforcement. This issue is fixed in Safari 17. An attacker with JavaScript execution may be able to execute arbitrary code.


Published

2023-09-27T15:19:17.090

Last Modified

2024-11-21T08:19:29.647

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 8.8 (HIGH)

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application apple safari < 17.0 Yes

References