CVE-2025-31192

The issue was addressed with improved checks. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4. A website may be able to access sensor information without user consent.
Configurations

No configuration.

History

03 Apr 2025, 21:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.7
Summary
  • (es) El problema se solucionó mejorando las comprobaciones. Este problema está corregido en Safari 18.4, iOS 18.4, iPadOS 18.4 y macOS Sequoia 15.4. Un sitio web podría acceder a la información del sensor sin el consentimiento del usuario.
CWE CWE-305

31 Mar 2025, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-31 23:15

Updated : 2025-04-03 21:15


NVD link : CVE-2025-31192

Mitre link : CVE-2025-31192

CVE.ORG link : CVE-2025-31192


JSON object : View

Products Affected

No product.

CWE
CWE-305

Authentication Bypass by Primary Weakness