CVE-2024-40836

All FrameworksiOSCWE-200CVE-2024-40836

CVE-2024-40836

State: PUBLISHED · Published: 2024-07-29 · Updated: 2026-04-02 · Assigner: apple
Description
A logic issue was addressed with improved checks. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, watchOS 10.6. A shortcut may be able to use sensitive data with certain actions without prompting the user.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2024/40xxx/CVE-2024-40836.json