CVE-2025-43229

This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.6, Safari 18. 6. Processing maliciously crafted web content may lead to universal cross site scripting.
CVSS

No CVSS.

References
Link Resource
https://support.apple.com/en-us/124149 Release Notes Vendor Advisory
https://support.apple.com/en-us/124152 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*

History

01 Aug 2025, 14:35

Type Values Removed Values Added
First Time Apple safari
Apple macos
Apple
References () https://support.apple.com/en-us/124149 - () https://support.apple.com/en-us/124149 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/124152 - () https://support.apple.com/en-us/124152 - Release Notes, Vendor Advisory
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*

30 Jul 2025, 23:15

Type Values Removed Values Added
Summary This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.6. Processing maliciously crafted web content may lead to universal cross site scripting. This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.6, Safari 18. 6. Processing maliciously crafted web content may lead to universal cross site scripting.
References
  • () https://support.apple.com/en-us/124152 -

30 Jul 2025, 00:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-30 00:15

Updated : 2025-08-01 14:35


NVD link : CVE-2025-43229

Mitre link : CVE-2025-43229


JSON object : View

Products Affected

apple

  • safari
  • macos
CWE

No CWE.