CVE-2024-44309
CVSS 3.1 Score 6.1 of 10 (medium)
Details
Published Nov 20, 2024
Updated: Nov 29, 2024
CWE ID 79
Summary
CVE-2024-44309 is a cookie management issue that has been addressed through improved state management in Safari 18.1.1, iOS 17.7.2, iPadOS 17.7.2, macOS Sequoia 15.1.1, iOS 18.1.1, and iPadOS 18.1.1, as well as visionOS 2.1.1. Maliciously crafted web content can lead to a cross-site scripting attack, potentially exploiting this vulnerability. Apple has acknowledged that this issue may have already been taken advantage of on Intel-based Mac systems. Users are advised to update their software to mitigate the risk of attack.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.