CVE-2025-24150
A privacy issue was addressed with improved handling of files. This issue is fixed in Safari 18.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3. Copying a URL from Web Inspector may lead to command injection.
Vendor
Product
CWE
Yayın Tarihi
2025-01-27 22:15:19
Güncelleme
2026-04-02 19:19:07
Source Identifier
product-security@apple.com
KEV Date Added
-
Kategoriler
Referanslar
https://support.apple.com/en-us/122066
https://support.apple.com/en-us/122068
https://support.apple.com/en-us/122074
http://seclists.org/fulldisclosure/2025/Jan/13
http://seclists.org/fulldisclosure/2025/Jan/15
http://seclists.org/fulldisclosure/2025/Jan/20
https://lists.debian.org/debian-lts-announce/2025/02/msg00014.html