Apple Fixes Two Exploited Vulnerabilities, (Tue, Nov 19th)
ID: a21e27db-36c7-50ba-a519-d1dd2db12ece
STIX ID: report--a21e27db-36c7-50ba-a519-d1dd2db12ece
Feed Name: SANS ISC Diary
Threat Score
Apple released updates addressing two vulnerabilities exploited in the wild: CVE-2024-44308 (JavaScriptCore arbitrary code execution via malicious web pages) and CVE-2024-44309 (WebKit cookie-management vulnerability leading to XSS). Apple reports exploitation observed on Intel-based systems but patches were issued across Safari and all Apple OSes, including iOS/iPadOS/VisionOS.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
