CVE Vulnerabilities

CVE-2025-24128

Published: Jan 27, 2025 | Modified: Nov 03, 2025
CVSS 3.x
4.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The issue was addressed by adding additional logic. This issue is fixed in macOS Sequoia 15.3, Safari 18.3, iOS 18.3 and iPadOS 18.3. Visiting a malicious website may lead to address bar spoofing.

Affected Software

NameVendorStart VersionEnd Version
SafariApple*18.3 (excluding)
IpadosApple*18.3 (excluding)
Iphone_osApple*18.3 (excluding)
MacosApple*15.3 (excluding)

References