CVE-2025-24143
CVSS Score
6.5
EPSS Score
0.0%
EPSS Percentile
0th
The issue was addressed with improved access restrictions to the file system. This issue is fixed in Safari 18.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, visionOS 2.3. A maliciously crafted webpage may be able to fingerprint the user.
| Vendor | apple |
| Product | safari |
| Ecosystems | |
| Industries | Technology |
| Published | Jan 27, 2025 |
| Last Updated | Apr 2, 2026 |
Stay Ahead of the Next One
Get instant alerts for apple safari
Be the first to know when new medium vulnerabilities affecting apple safari are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Apple / Safari
0 < 18.3
Apple / iOS and iPadOS
0 < 18.3
Apple / macOS
0 < 15.3
Apple / visionOS
0 < 2.3
References
support.apple.com: https://support.apple.com/en-us/122066 support.apple.com: https://support.apple.com/en-us/122068 support.apple.com: https://support.apple.com/en-us/122073 support.apple.com: https://support.apple.com/en-us/122074 lists.debian.org: https://lists.debian.org/debian-lts-announce/2025/02/msg00014.html seclists.org: http://seclists.org/fulldisclosure/2025/Jan/20 seclists.org: http://seclists.org/fulldisclosure/2025/Jan/15 seclists.org: http://seclists.org/fulldisclosure/2025/Jan/13