logo

Apple Fixes Two Exploited Vulnerabilities, (Tue, Nov 19th)

ID: a21e27db-36c7-50ba-a519-d1dd2db12ece

STIX ID: report--a21e27db-36c7-50ba-a519-d1dd2db12ece

Feed Name: SANS ISC Diary

Threat Score
75/100

Date Published: 2024-11-19

Date Updated: 2026-04-19

...
...

Apple released updates addressing two vulnerabilities exploited in the wild: CVE-2024-44308 (JavaScriptCore arbitrary code execution via malicious web pages) and CVE-2024-44309 (WebKit cookie-management vulnerability leading to XSS). Apple reports exploitation observed on Intel-based systems but patches were issued across Safari and all Apple OSes, including iOS/iPadOS/VisionOS.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.