CVE-2022-22637

Name
CVE-2022-22637
Description
A logic issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.3, Safari 15.4, watchOS 8.5, iOS 15.4 and iPadOS 15.4, tvOS 15.4. A malicious website may cause unexpected cross-origin behavior.
NVD Severity
high
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
MISC https://support.apple.com/en-us/HT213186
MISC https://support.apple.com/en-us/HT213187
MISC https://support.apple.com/en-us/HT213182
MISC https://support.apple.com/en-us/HT213193
MISC https://support.apple.com/en-us/HT213183

Match rules

CPE URI Source package Min version Max version
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* tvos >= None < 15.4
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* iphone_os >= None < 15.4
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* watchos >= None < 8.5
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* macos >= 12.0 < 12.3
cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:* safari >= None < 15.4
cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:* ipad_os >= None < 15.4

Vulnerable and fixed packages

Source package Branch Version Maintainer Status