A cross-origin issue in the IndexDB API was addressed with improved input validation. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Safari 15.3, macOS Monterey 12.2. A website may be able to track sensitive user information.
References
Link | Resource |
---|---|
https://support.apple.com/en-us/HT213053 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT213054 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT213057 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT213058 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT213059 | Release Notes Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: apple
Published: 2022-03-18T17:59:23
Updated: 2022-03-18T17:59:23
Reserved: 2022-01-05T00:00:00
Link: CVE-2022-22594
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-03-18T18:15:12.850
Modified: 2022-03-28T16:40:32.487
Link: CVE-2022-22594
JSON object: View
Redhat Information
No data.
CWE