This issue was addressed with improved iframe sandbox enforcement. This issue is fixed in Safari 17. An attacker with JavaScript execution may be able to execute arbitrary code.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: apple

Published: 2023-09-26T20:14:38.617Z

Updated: 2023-09-26T20:14:38.617Z

Reserved: 2023-08-14T20:26:36.268Z


Link: CVE-2023-40451

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2023-09-27T15:19:17.090

Modified: 2024-01-31T15:15:09.977


Link: CVE-2023-40451

JSON object: View

cve-icon Redhat Information

No data.