ZeroHour

CVE-2022-22594

CVSS 3.1
6.5 medium
EPSS
<1%p57
Published
()
Modified
Description

A cross-origin issue in the IndexDB API was addressed with improved input validation. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Safari 15.3, macOS Monterey 12.2. A website may be able to track sensitive user information.

Vendors
apple
Products
safari, ipados, iphone os, macos, tvos, watchos
Weakness
CWE-346
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

In the news