CVE-2024-54467
- EPSS 0.09%
- Published 10.03.2025 19:15:38
- Last modified 14.03.2025 11:59:19
A cookie management issue was addressed with improved state management. This issue is fixed in watchOS 11, macOS Sequoia 15, Safari 18, visionOS 2, iOS 18 and iPadOS 18, tvOS 18. A malicious website may exfiltrate data cross-origin.
CVE-2024-54658
- EPSS 0.17%
- Published 10.02.2025 19:15:39
- Last modified 19.03.2025 18:15:23
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.4 and iPadOS 17.4, Safari 17.4, tvOS 17.4, watchOS 10.4, visionOS 1.1, macOS Sonoma 14.4. Processing web content may lead to a denial-of-service.
CVE-2025-24162
- EPSS 0.3%
- Published 27.01.2025 22:15:20
- Last modified 18.03.2025 15:15:59
This issue was addressed through improved state management. This issue is fixed in visionOS 2.3, Safari 18.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. Processing maliciously crafted web content may lead to an unexpected ...
CVE-2025-24169
- EPSS 0.08%
- Published 27.01.2025 22:15:20
- Last modified 31.01.2025 22:15:14
A logging issue was addressed with improved data redaction. This issue is fixed in macOS Sequoia 15.3, Safari 18.3. A malicious app may be able to bypass browser extension authentication.
CVE-2025-24150
- EPSS 0.26%
- Published 27.01.2025 22:15:19
- Last modified 05.02.2025 16:15:42
A privacy issue was addressed with improved handling of files. This issue is fixed in macOS Sequoia 15.3, Safari 18.3, iOS 18.3 and iPadOS 18.3. Copying a URL from Web Inspector may lead to command injection.
CVE-2025-24158
- EPSS 0.24%
- Published 27.01.2025 22:15:19
- Last modified 22.03.2025 15:15:38
The issue was addressed with improved memory handling. This issue is fixed in visionOS 2.3, Safari 18.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. Processing web content may lead to a denial-of-service.
CVE-2025-24143
- EPSS 0.09%
- Published 27.01.2025 22:15:18
- Last modified 04.02.2025 22:15:42
The issue was addressed with improved access restrictions to the file system. This issue is fixed in macOS Sequoia 15.3, Safari 18.3, iOS 18.3 and iPadOS 18.3, visionOS 2.3. A maliciously crafted webpage may be able to fingerprint the user.
CVE-2025-24128
- EPSS 0.08%
- Published 27.01.2025 22:15:17
- Last modified 31.01.2025 22:15:13
The issue was addressed by adding additional logic. This issue is fixed in macOS Sequoia 15.3, Safari 18.3, iOS 18.3 and iPadOS 18.3. Visiting a malicious website may lead to address bar spoofing.
CVE-2025-24113
- EPSS 0.09%
- Published 27.01.2025 22:15:16
- Last modified 31.01.2025 22:15:13
The issue was addressed with improved UI. This issue is fixed in macOS Sequoia 15.3, Safari 18.3, iOS 18.3 and iPadOS 18.3, visionOS 2.3. Visiting a malicious website may lead to user interface spoofing.
CVE-2024-54542
- EPSS 0.2%
- Published 27.01.2025 22:15:14
- Last modified 24.03.2025 14:53:26
An authentication issue was addressed with improved state management. This issue is fixed in Safari 18.2, macOS Sequoia 15.2, watchOS 11.2, iOS 18.2 and iPadOS 18.2. Private Browsing tabs may be accessed without authentication.