cbcvebase.
CVE-2023-23526
published 2023-05-08

CVE-2023-23526: This was addressed with additional checks by Gatekeeper on files downloaded from an iCloud shared-by-me folder. This issue is fixed in macOS Ventura 13.3, iOS…

PriorityP341critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
0.73%
50.0th percentile
This was addressed with additional checks by Gatekeeper on files downloaded from an iCloud shared-by-me folder. This issue is fixed in macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4. A file from an iCloud shared-by-me folder may be able to bypass Gatekeeper.

Affected

7 ranges
VendorProductVersion rangeFixed in
appleios_16.4_and_ipados
appleios_and_ipados>= unspecified < 16.416.4
appleipados< 16.416.4
appleiphone_os< 16.416.4
applemacos< 13.313.3
applemacos>= unspecified < 13.313.3
applemacos_ventura
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.