CVE-2024-54530

The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.2, watchOS 11.2, visionOS 2.2, iOS 18.2 and iPadOS 18.2. Password autofill may fill in passwords after failing authentication.
References
Link Resource
https://support.apple.com/en-us/121837 Release Notes Vendor Advisory
https://support.apple.com/en-us/121839 Release Notes Vendor Advisory
https://support.apple.com/en-us/121843 Release Notes Vendor Advisory
https://support.apple.com/en-us/121845 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

04 Apr 2025, 18:14

Type Values Removed Values Added
First Time Apple ipados
Apple macos
Apple iphone Os
Apple
Apple visionos
Apple watchos
CPE cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
References () https://support.apple.com/en-us/121837 - () https://support.apple.com/en-us/121837 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/121839 - () https://support.apple.com/en-us/121839 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/121843 - () https://support.apple.com/en-us/121843 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/121845 - () https://support.apple.com/en-us/121845 - Release Notes, Vendor Advisory

18 Mar 2025, 21:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1
CWE CWE-863

18 Feb 2025, 20:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 9.1
v2 : unknown
v3 : unknown
CWE CWE-862

28 Jan 2025, 16:15

Type Values Removed Values Added
Summary
  • (es) El problema se solucionó con comprobaciones mejoradas. Este problema se solucionó en macOS Sequoia 15.2, watchOS 11.2, visionOS 2.2, iOS 18.2 y iPadOS 18.2. La función de autocompletar contraseñas puede completar las contraseñas después de una autenticación fallida.
CWE CWE-862
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1

27 Jan 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-27 22:15

Updated : 2025-04-04 18:14


NVD link : CVE-2024-54530

Mitre link : CVE-2024-54530

CVE.ORG link : CVE-2024-54530


JSON object : View

Products Affected

apple

  • watchos
  • macos
  • visionos
  • ipados
  • iphone_os
CWE
CWE-863

Incorrect Authorization