CVE-2023-42973
published 2025-04-11CVE-2023-42973: Private Browsing tabs may be accessed without authentication. This issue is fixed in iOS 17 and iPadOS 17. The issue was addressed with improved UI.
PriorityP415medium4CVSS 3.1
AVLACLPRNUINSUCLINAN
EPSS
0.18%
8.2th percentile
Private Browsing tabs may be accessed without authentication. This issue is fixed in iOS 17 and iPadOS 17. The issue was addressed with improved UI.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_17_and_ipados | — | — |
| apple | ios_and_ipados | >= unspecified < 17 | 17 |
| apple | ipados | — | — |
| apple | iphone_os | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2023-42973: iOS 17 and iPadOS 17
vendor_apple·2023-09-18·CVSS 4.0
CVE-2023-42973 [MEDIUM] CVE-2023-42973: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-42973
Component: Safari Private Browsing
Impact: Private Browsing tabs may be accessed without authentication
Description: The issue was addressed with improved UI.
GHSA
GHSA-cmwf-4hcv-45rc: Private Browsing tabs may be accessed without authentication
ghsa_unreviewed·2025-04-11
CVE-2023-42973 [MEDIUM] CWE-285 GHSA-cmwf-4hcv-45rc: Private Browsing tabs may be accessed without authentication
Private Browsing tabs may be accessed without authentication. This issue is fixed in iOS 17 and iPadOS 17. The issue was addressed with improved UI.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-04-11
Published