CVE-2023-27932
08.05.2023, 20:15
This issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.3, Safari 16.4, iOS 16.4 and iPadOS 16.4, tvOS 16.4, watchOS 9.4. Processing maliciously crafted web content may bypass Same Origin Policy.Enginsight
Vendor | Product | Version |
---|---|---|
apple | safari | 𝑥 < 16.4 |
apple | ipados | 𝑥 < 16.4 |
apple | iphone_os | 𝑥 < 16.4 |
apple | macos | 𝑥 < 13.3 |
apple | tvos | 𝑥 < 16.4 |
apple | watchos | 𝑥 < 9.4 |
debian | debian_linux | 10.0 |
𝑥
= Vulnerable software versions

Debian Releases
Debian Product | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
webkit2gtk |
| ||||||||||||
wpewebkit |
|

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
qtwebkit-opensource-src |
| ||||||||||||||||||
qtwebkit-source |
| ||||||||||||||||||
webkit2gtk |
| ||||||||||||||||||
webkitgtk |
| ||||||||||||||||||
wpewebkit |
|
Common Weakness Enumeration
References