First published: Tue Dec 13 2022(Updated: )
WebKit. A spoofing issue existed in the handling of URLs. This issue was addressed with improved input validation.
Credit: product-security@apple.com product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS | <16.4 | 16.4 |
Apple iPadOS | <16.4 | 16.4 |
Apple iPadOS | <16.4 | |
Apple iPhone OS | <16.4 | |
<13.1 | 13.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2022-46725 is a spoofing issue that existed in the handling of URLs in WebKit, which has been addressed with improved input validation.
CVE-2022-46725 has a severity value of 4.3, which is considered medium.
CVE-2022-46725 affects iOS 16.4 and iPadOS 16.4. Visiting a malicious website may lead to address bar spoofing.
To fix CVE-2022-46725, update your iOS or iPadOS to version 16.4 or newer.
You can find more information about CVE-2022-46725 on the Apple support website: https://support.apple.com/en-us/HT213676