cbcvebase.
CVE-2022-22637
published 2022-09-23

CVE-2022-22637: A logic issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.3, Safari 15.4, watchOS 8.5, iOS 15.4 and iPadOS 15.4…

high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
A logic issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.3, Safari 15.4, watchOS 8.5, iOS 15.4 and iPadOS 15.4, tvOS 15.4. A malicious website may cause unexpected cross-origin behavior.

Affected

17 ranges
VendorProductVersion rangeFixed in
appleios_15.4_and_ipados
appleipad_os< 15.415.4
appleiphone_os< 15.415.4
applemacos>= 12.0 < 12.312.3
applemacos_monterey
applesafari< 15.415.4
applesafari
applesafari>= unspecified < 15.415.4
appletvos< 15.415.4
appletvos
appletvos>= unspecified < 15.415.4
appletvos>= unspecified < 12.312.3
applewatchos< 8.58.5
applewatchos
applewatchos>= unspecified < 8.58.5
debianwebkit2gtk< webkit2gtk 2.34.4-1 (bookworm)webkit2gtk 2.34.4-1 (bookworm)
debianwpewebkit< webkit2gtk 2.34.4-1 (bookworm)webkit2gtk 2.34.4-1 (bookworm)

CVSS provenance

nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv8.8HIGH