We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2024-27855



Description

The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.5, macOS Ventura 13.6.7, iOS 17.5 and iPadOS 17.5, iOS 16.7.8 and iPadOS 16.7.8. A shortcut may be able to use sensitive data with certain actions without prompting the user.

Reserved 2024-02-26 | Published 2024-06-10 | Updated 2025-03-13 | Assigner apple

Problem types

A shortcut may be able to use sensitive data with certain actions without prompting the user

Product status

Any version before 17.5
affected

Any version before 16.7
affected

Any version before 13.6
affected

Any version before 14.5
affected

References

support.apple.com/en-us/HT214101

support.apple.com/en-us/HT214100

support.apple.com/en-us/HT214107

support.apple.com/en-us/HT214106

support.apple.com/kb/HT214107

support.apple.com/kb/HT214100

support.apple.com/kb/HT214106

support.apple.com/kb/HT214101

cve.org (CVE-2024-27855)

nvd.nist.gov (CVE-2024-27855)

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2024-27855

Support options

Helpdesk Chat, Email, Knowledgebase