cbcvebase.
CVE-2022-22589
published 2022-03-18

CVE-2022-22589: A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Safari 15.3, macOS…

medium6.1CVSS 3.1
AVNACLPRNUIRSCCLILAN
A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Safari 15.3, macOS Monterey 12.2. Processing a maliciously crafted mail message may lead to running arbitrary javascript.

Affected

23 ranges
VendorProductVersion rangeFixed in
appleios_15.3_and_ipados
appleios_and_ipados>= unspecified < 15.315.3
appleipados< 15.315.3
appleiphone_os< 15.315.3
applemac_os_x
applemac_os_x>= 10.15 < 10.15.710.15.7
applemacos>= 11.0 < 11.6.611.6.6
applemacos>= 12.0.0 < 12.212.2
applemacos>= unspecified < 12.212.2
applemacos_big_sur
applemacos_monterey
applesafari< 15.315.3
applesafari
applesecurity_update_2022-003_catalina
applesecurity_update_2022-004_catalina
appletvos< 15.315.3
appletvos
appletvos>= unspecified < 15.315.3
applewatchos< 8.48.4
applewatchos
applewatchos>= unspecified < 8.48.4
debianwebkit2gtk< webkit2gtk 2.34.5-1 (bookworm)webkit2gtk 2.34.5-1 (bookworm)
debianwpewebkit< webkit2gtk 2.34.5-1 (bookworm)webkit2gtk 2.34.5-1 (bookworm)

CVSS provenance

nvdv3.16.1MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
osv6.1MEDIUM