CVE Vulnerabilities

CVE-2023-40451

Published: Sep 27, 2023 | Modified: Jan 31, 2024
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

This issue was addressed with improved iframe sandbox enforcement. This issue is fixed in Safari 17. An attacker with JavaScript execution may be able to execute arbitrary code.

Affected Software

Name Vendor Start Version End Version
Safari Apple * 17.0 (excluding)

References