This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.6, Safari 18. 6. Processing maliciously crafted web content may lead to universal cross site scripting.
History

Fri, 01 Aug 2025 14:45:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

Thu, 31 Jul 2025 18:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-79
Metrics cvssV3_1

{'score': 6.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 31 Jul 2025 10:30:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Apple safari
Apple sequoia
Vendors & Products Apple
Apple macos
Apple safari
Apple sequoia

Wed, 30 Jul 2025 23:00:00 +0000

Type Values Removed Values Added
Description This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.6. Processing maliciously crafted web content may lead to universal cross site scripting. This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.6, Safari 18. 6. Processing maliciously crafted web content may lead to universal cross site scripting.
References

Tue, 29 Jul 2025 23:45:00 +0000

Type Values Removed Values Added
Description This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.6. Processing maliciously crafted web content may lead to universal cross site scripting.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published: 2025-07-29T23:29:11.969Z

Updated: 2025-07-31T17:58:02.942Z

Reserved: 2025-04-16T15:24:37.091Z

Link: CVE-2025-43229

cve-icon Vulnrichment

Updated: 2025-07-30T13:30:01.110Z

cve-icon NVD

Status : Analyzed

Published: 2025-07-30T00:15:35.023

Modified: 2025-08-01T14:35:15.780

Link: CVE-2025-43229

cve-icon Redhat

No data.