Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-23271


A logic issue was addressed with improved checks. This issue is fixed in iOS 17.3 and iPadOS 17.3, Safari 17.3, tvOS 17.3, macOS Sonoma 14.3, watchOS 10.3. A malicious website may cause unexpected cross-origin behavior.


Published

2024-04-24T17:15:47.127

Last Modified

2024-12-12T14:33:00.640

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo
  • Type: Secondary
    CWE-284

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application apple safari < 17.3 Yes
Operating System apple ipados < 17.3 Yes
Operating System apple iphone_os < 17.3 Yes
Operating System apple macos < 14.3 Yes
Operating System apple tvos < 17.3 Yes
Operating System apple watchos < 10.3 Yes

References