CVE Vulnerabilities

CVE-2024-44212

Origin Validation Error

Published: Dec 12, 2024 | Modified: Dec 13, 2024
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A cookie management issue was addressed with improved state management. This issue is fixed in Safari 18.1, visionOS 2.1, tvOS 18.1, iOS 18.1 and iPadOS 18.1, watchOS 11.1. Cookies belonging to one origin may be sent to another origin.

Weakness

The product does not properly verify that the source of data or communication is valid.

Affected Software

Name Vendor Start Version End Version
Safari Apple * 18.1 (excluding)
Ipados Apple * 18.1 (excluding)
Iphone_os Apple * 18.1 (excluding)
Tvos Apple * 18.1 (excluding)
Visionos Apple * 2.1 (excluding)
Watchos Apple * 11.1 (excluding)

References