First published: Mon Apr 07 2025(Updated: )
A permissions issue was addressed with additional restrictions. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4. Loading a malicious iframe may lead to a cross-site scripting attack.
Affected Software | Affected Version | How to fix |
---|---|---|
Safari | <18.4 | |
Apple iOS and iPadOS | <18.4 | |
Apple iOS, iPadOS, and macOS | <18.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
REDHAT-BUG-2357910 addresses a permissions issue that could lead to cross-site scripting attacks.
To fix REDHAT-BUG-2357910, update your software to Safari 18.4, iOS 18.4, or iPadOS 18.4.
REDHAT-BUG-2357910 affects Apple Safari, iOS, and iPadOS versions prior to 18.4.
REDHAT-BUG-2357910 addresses a permissions issue that may allow cross-site scripting through malicious iframes.
No specific workaround for REDHAT-BUG-2357910 is provided; updating to the fixed version is recommended.