ZeroHour

CVE-2024-23280

CVSS 3.1
6.5 medium
EPSS
1%p68
Published
()
Modified
Description

An injection issue was addressed with improved validation. This issue is fixed in Safari 17.4, iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4, watchOS 10.4. A maliciously crafted webpage may be able to fingerprint the user.

Vendors
applefedoraprojectwebkitgtkwpewebkit
Products
safari, ipad os, iphone os, macos, tvos, watchos, fedora, webkitgtk, wpe webkit
Weakness
CWE-74
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.