A logic issue was addressed with improved checks. This issue is fixed in iOS 17.3 and iPadOS 17.3, Safari 17.3, tvOS 17.3, macOS Sonoma 14.3, watchOS 10.3. A malicious website may cause unexpected cross-origin behavior.
2024-04-24T17:15:47.127
2024-12-12T14:33:00.640
Analyzed
CVSSv3.1: 6.5 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | apple | safari | < 17.3 | Yes |
| Operating System | apple | ipados | < 17.3 | Yes |
| Operating System | apple | iphone_os | < 17.3 | Yes |
| Operating System | apple | macos | < 14.3 | Yes |
| Operating System | apple | tvos | < 17.3 | Yes |
| Operating System | apple | watchos | < 10.3 | Yes |