CVE-2024-54467

A cookie management issue was addressed with improved state management. This issue is fixed in watchOS 11, macOS Sequoia 15, Safari 18, visionOS 2, iOS 18 and iPadOS 18, tvOS 18. A malicious website may exfiltrate data cross-origin.
References
Link Resource
https://support.apple.com/en-us/121238 Vendor Advisory Release Notes
https://support.apple.com/en-us/121240 Vendor Advisory Release Notes
https://support.apple.com/en-us/121241 Vendor Advisory Release Notes
https://support.apple.com/en-us/121248 Vendor Advisory Release Notes
https://support.apple.com/en-us/121249 Vendor Advisory Release Notes
https://support.apple.com/en-us/121250 Vendor Advisory Release Notes
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*

History

14 Mar 2025, 11:59

Type Values Removed Values Added
First Time Apple ipados
Apple tvos
Apple safari
Apple macos
Apple watchos
Apple
Apple iphone Os
References () https://support.apple.com/en-us/121240 - () https://support.apple.com/en-us/121240 - Vendor Advisory, Release Notes
References () https://support.apple.com/en-us/121249 - () https://support.apple.com/en-us/121249 - Vendor Advisory, Release Notes
References () https://support.apple.com/en-us/121248 - () https://support.apple.com/en-us/121248 - Vendor Advisory, Release Notes
References () https://support.apple.com/en-us/121238 - () https://support.apple.com/en-us/121238 - Vendor Advisory, Release Notes
References () https://support.apple.com/en-us/121241 - () https://support.apple.com/en-us/121241 - Vendor Advisory, Release Notes
References () https://support.apple.com/en-us/121250 - () https://support.apple.com/en-us/121250 - Vendor Advisory, Release Notes
CPE cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5
CWE NVD-CWE-noinfo

10 Mar 2025, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-10 19:15

Updated : 2025-03-14 11:59


NVD link : CVE-2024-54467

Mitre link : CVE-2024-54467


JSON object : View

Products Affected

apple

  • tvos
  • watchos
  • ipados
  • safari
  • macos
  • iphone_os