ZeroHour

CVE-2024-23254

CVSS 3.1
6.5 medium
EPSS
1%p68
Published
()
Modified
Description

The issue was addressed with improved UI handling. This issue is fixed in Safari 17.4, iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4, visionOS 1.1, watchOS 10.4. A malicious website may exfiltrate audio data cross-origin.

Vendors
applefedoraprojectwebkitgtkwpewebkit
Products
safari, ipad os, iphone os, macos, tvos, visionos, watchos, fedora, webkitgtk, wpe webkit
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.