Description

A custom URL scheme handling issue was addressed with improved input validation. This issue is fixed in Safari 18, iOS 17.7.1 and iPadOS 17.7.1, iOS 18 and iPadOS 18, macOS Sequoia 15, watchOS 11. Maliciously crafted web content may violate iframe sandboxing policy.

INFO

Published Date :

2024-10-28T21:08:25.991Z

Last Modified :

2026-04-02T18:22:18.770Z

Source :

apple
AFFECTED PRODUCTS

The following products are affected by CVE-2024-44155 vulnerability.

Vendors Products
Apple
  • Ipados
  • Iphone Os
  • Macos
  • Safari
  • Watchos

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact