CISA Known Exploited Vulnerability

CVE-2023-32409

Apple · Multiple Products

Apple Multiple Products WebKit Sandbox Escape Vulnerability

Date added
BOD 22-01 due date
CWE
Ransomware Unknown

CISA description

Apple iOS, iPadOS, macOS, tvOS, watchOS, and Safari WebKit contain an unspecified vulnerability that can allow a remote attacker to break out of the Web Content sandbox. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

Required action

Apply updates per vendor instructions.