ZeroHour

CVE-2021-30897

CVSS 3.1
6.5 medium
EPSS
2%p76
Published
()
Modified
Description

An issue existed in the specification for the resource timing API. The specification was updated and the updated specification was implemented. This issue is fixed in macOS Monterey 12.0.1. A malicious website may exfiltrate data cross-origin.

Vendors
apple
Products
ipados, iphone os, macos, tvos
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.