CVE-2024-40867

All FrameworksiOSCWE-OtherCVE-2024-40867

CVE-2024-40867

State: PUBLISHED · Published: 2024-10-28 · Updated: 2026-04-02 · Assigner: apple
Description
A custom URL scheme handling issue was addressed with improved input validation. This issue is fixed in iOS 18.1 and iPadOS 18.1. A remote attacker may be able to break out of Web Content sandbox.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2024/40xxx/CVE-2024-40867.json