CVE-2023-27932
MEDIUM | Platform: macOS | Changelog
CVE Details
Description
This issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.3, Safari 16.4, iOS 16.4 and iPadOS 16.4, tvOS 16.4, watchOS 9.4. Processing maliciously crafted web content may bypass Same Origin Policy.
CVSS 3.1 Score
| Metric | Value |
|---|---|
| Base Score | 5.5 (MEDIUM) |
| Vector | CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N |
Weakness
References
- Apple Security Advisory
- NVD Entry
- https://support.apple.com/en-us/HT213670 (Vendor Advisory)
- https://support.apple.com/en-us/HT213671 (Vendor Advisory)
- https://support.apple.com/en-us/HT213674 (Vendor Advisory)
- https://support.apple.com/en-us/HT213676 (Vendor Advisory)
- https://support.apple.com/en-us/HT213678 (Vendor Advisory)