Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-27821


A path handling issue was addressed with improved validation. This issue is fixed in iOS 17.5 and iPadOS 17.5, watchOS 10.5, macOS Sonoma 14.5. A shortcut may output sensitive user data without consent.


Published

2024-05-14T15:13:05.287

Last Modified

2024-12-12T14:33:00.640

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 4.7 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-22
  • Type: Secondary
    CWE-22

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System apple ipados < 17.5 Yes
Operating System apple iphone_os < 17.5 Yes
Operating System apple macos < 14.5 Yes
Operating System apple watchos < 10.5 Yes

References