CVE-2023-27932

This issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.3, Safari 16.4, iOS 16.4 and iPadOS 16.4, tvOS 16.4, watchOS 9.4. Processing maliciously crafted web content may bypass Same Origin Policy.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*

History

29 Jan 2025, 21:15

Type Values Removed Values Added
CWE CWE-346

Information

Published : 2023-05-08 20:15

Updated : 2025-01-29 21:15


NVD link : CVE-2023-27932

Mitre link : CVE-2023-27932

CVE.ORG link : CVE-2023-27932


JSON object : View

Products Affected

debian

  • debian_linux

apple

  • watchos
  • macos
  • tvos
  • safari
  • ipados
  • iphone_os
CWE
NVD-CWE-noinfo CWE-346

Origin Validation Error