A path handling issue was addressed with improved validation. This issue is fixed in iOS 17.5 and iPadOS 17.5, watchOS 10.5, macOS Sonoma 14.5. A shortcut may output sensitive user data without consent.
2024-05-14T15:13:05.287
2024-12-12T14:33:00.640
Analyzed
CVSSv3.1: 4.7 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | apple | ipados | < 17.5 | Yes |
Operating System | apple | iphone_os | < 17.5 | Yes |
Operating System | apple | macos | < 14.5 | Yes |
Operating System | apple | watchos | < 10.5 | Yes |