CVE-2022-32784
published 2023-02-27CVE-2022-32784: The issue was addressed with improved UI handling. This issue is fixed in Safari 15.6, iOS 15.6 and iPadOS 15.6. Visiting a maliciously crafted website may…
PriorityP430medium6.5CVSS 3.1
AVNACLPRNUIRSUCHINAN
EPSS
0.55%
42.8th percentile
The issue was addressed with improved UI handling. This issue is fixed in Safari 15.6, iOS 15.6 and iPadOS 15.6. Visiting a maliciously crafted website may leak sensitive data.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_15.6_and_ipados | — | — |
| apple | ios_and_ipados | >= unspecified < 15.6 | 15.6 |
| apple | ipados | < 15.6 | 15.6 |
| apple | iphone_os | < 15.5 | 15.5 |
| apple | safari | < 15.6 | 15.6 |
| apple | safari | — | — |
| apple | safari | >= unspecified < 15.6 | 15.6 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Apple iOS/iPadOS up to 15.5 Safari Extensions information disclosure (HT213346 / EUVD-2022-35850)
vuldb·2026-06-02·CVSS 6.5
CVE-2022-32784 [MEDIUM] Apple iOS/iPadOS up to 15.5 Safari Extensions information disclosure (HT213346 / EUVD-2022-35850)
A vulnerability described as problematic has been identified in Apple iOS and iPadOS up to 15.5. This affects an unknown part of the component Safari Extensions. Such manipulation leads to information disclosure.
This vulnerability is traded as CVE-2022-32784. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.
VulDB
Apple Safari up to 15.5 Safari Extensions information disclosure (HT213341 / EUVD-2022-35850)
vuldb·2026-06-02·CVSS 6.5
CVE-2022-32784 [MEDIUM] Apple Safari up to 15.5 Safari Extensions information disclosure (HT213341 / EUVD-2022-35850)
A vulnerability identified as problematic has been detected in Apple Safari up to 15.5. Impacted is an unknown function of the component Safari Extensions. This manipulation causes information disclosure.
This vulnerability appears as CVE-2022-32784. The attack may be initiated remotely. There is no available exploit.
You should upgrade the affected component.
GHSA
GHSA-wc59-h2vv-mqjr: The issue was addressed with improved UI handling
ghsa_unreviewed·2023-02-27
CVE-2022-32784 [MEDIUM] CWE-200 GHSA-wc59-h2vv-mqjr: The issue was addressed with improved UI handling
The issue was addressed with improved UI handling. This issue is fixed in Safari 15.6, iOS 15.6 and iPadOS 15.6. Visiting a maliciously crafted website may leak sensitive data.
Apple
CVE-2022-32784: Safari 15.6
vendor_apple·2022-07-20·CVSS 6.5
CVE-2022-32784 [MEDIUM] CVE-2022-32784: Safari 15.6
Apple Security Update: About the security content of Safari 15.6
Product: Safari
Version: 15.6
CVE: CVE-2022-32784
Component: Safari Extensions
Impact: Visiting a maliciously crafted website may leak sensitive data
Description: The issue was addressed with improved UI handling.
Apple
CVE-2022-32784: iOS 15.6 and iPadOS 15.6
vendor_apple·2022-07-20·CVSS 6.5
CVE-2022-32784 [MEDIUM] CVE-2022-32784: iOS 15.6 and iPadOS 15.6
Apple Security Update: About the security content of iOS 15.6 and iPadOS 15.6
Product: iOS 15.6 and iPadOS
Version: 15.6
CVE: CVE-2022-32784
Component: Safari Extensions
Impact: Visiting a maliciously crafted website may leak sensitive data
Description: The issue was addressed with improved UI handling.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-02-27
Published