216.73.216.233

CVE-2024-23222

· Published 23/01/2024 01:00 · Modified 04/04/2026 02:25 · Author: Cybersecurity and Infrastructure Security Agency

Labels: CVE-2024-23222

Essential information

Published
23/01/2024 01:00
Modified
04/04/2026 02:25
Author
Cybersecurity and Infrastructure Security Agency
Creator
Cybersecurity and Infrastructure Security Agency
CVSS
8.8 HIGH (v3.1)
CISA KEV
Yes
CWE
CWE-843
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CVSS metrics

Description

Apple iOS, iPadOS, macOS, tvOS, and Safari WebKit contain a type confusion vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

NVD status

NVD
View on NVD