CVE-2024-0807
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Jan 24, 2024
Updated: Jan 29, 2024
CWE ID 416
Summary
CVE-2024-0804 is a medium severity vulnerability affecting Google Chrome on iOS before version 121.0.6167.85. The issue stems from insufficient policy enforcement in the iOS Security UI, allowing a remote attacker to exfiltrate cross-origin data via a specially crafted HTML page. This vulnerability could potentially lead to confidential information being leaked, posing a privacy risk to users.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.