CVE-2025-24128
Description
The issue was addressed by adding additional logic. This issue is fixed in Safari 18.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3. Visiting a malicious website may lead to address bar spoofing.
CWE
- (none)
Affected
- Apple / Safari — v=0 <18.3 [affected]
- Apple / iOS and iPadOS — v=0 <18.3 [affected]
- Apple / macOS — v=0 <15.3 [affected]
CVSS
- (none)
References
- https://support.apple.com/en-us/122066
- https://support.apple.com/en-us/122068
- https://support.apple.com/en-us/122074
Source
cvelistV5-main/cves/2025/24xxx/CVE-2025-24128.json