CVE Vulnerabilities

CVE-2023-27954

Published: May 08, 2023 | Modified: Jul 27, 2023
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

The issue was addressed by removing origin information. This issue is fixed in macOS Ventura 13.3, Safari 16.4, iOS 16.4 and iPadOS 16.4, iOS 15.7.4 and iPadOS 15.7.4, tvOS 16.4, watchOS 9.4. A website may be able to track sensitive user information.

Affected Software

Name Vendor Start Version End Version
Safari Apple * 16.4 (excluding)
Ipad_os Apple * 15.7.4 (excluding)
Ipad_os Apple 16.0 (including) 16.4 (excluding)
Iphone_os Apple * 15.7.4 (excluding)
Iphone_os Apple 16.0 (including) 16.4 (excluding)
Macos Apple 13.0 (including) 13.3 (excluding)
Tvos Apple * 16.4 (excluding)
Watchos Apple * 9.4 (excluding)

References