Description
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 16.7.
Published: 2023-09-21
Score: 8.8 High
EPSS: 24.4% Moderate
KEV: Yes
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-5527-1 webkit2gtk security update
EUVD EUVD EUVD-2023-46452 The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 16.7.
Ubuntu USN Ubuntu USN USN-6426-1 WebKitGTK vulnerabilities
History

Tue, 04 Nov 2025 20:30:00 +0000


Tue, 21 Oct 2025 23:15:00 +0000


Tue, 21 Oct 2025 20:30:00 +0000


Tue, 21 Oct 2025 19:30:00 +0000


Tue, 15 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.08736}

epss

{'score': 0.08952}


Mon, 07 Jul 2025 14:15:00 +0000

Type Values Removed Values Added
First Time appeared Redhat rhel Els
CPEs cpe:/o:redhat:rhel_els:7
Vendors & Products Redhat rhel Els

Thu, 13 Feb 2025 18:15:00 +0000

Type Values Removed Values Added
First Time appeared Apple ipad Os
CPEs cpe:2.3:a:oracle:graalvm:21.3.9:*:*:*:*:*:*:*
cpe:2.3:a:oracle:jdk:1.8.0:-:*:*:*:*:*:*
cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipad_os:-:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:-:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
Vendors & Products Apple ipad Os
Metrics kev

{'dateAdded': '2023-09-25'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 29 Nov 2024 15:00:00 +0000

Type Values Removed Values Added
First Time appeared Netapp active Iq Unified Manager
CPEs cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:vsphere:*:*
cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:windows:*:*
Vendors & Products Netapp active Iq Unified Manager

Tue, 03 Sep 2024 20:45:00 +0000

Type Values Removed Values Added
First Time appeared Webkitgtk
Webkitgtk webkitgtk\+
CPEs cpe:2.3:a:webkitgtk:webkitgtk\+:*:*:*:*:*:*:*:*
Vendors & Products Webkitgtk
Webkitgtk webkitgtk\+

Thu, 29 Aug 2024 20:30:00 +0000

Type Values Removed Values Added
References

Wed, 14 Aug 2024 15:45:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}


Wed, 14 Aug 2024 01:00:00 +0000

Type Values Removed Values Added
References

Subscriptions

Apple Ipad Os Ipados Iphone Os Macos
Debian Debian Linux
Fedoraproject Fedora
Netapp Active Iq Unified Manager Cloud Insights Acquisition Unit Cloud Insights Storage Workload Security Agent Oncommand Insight Oncommand Workflow Automation
Oracle Graalvm Jdk Jre
Redhat Enterprise Linux Rhel Els
Webkitgtk Webkitgtk\+
cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2025-11-04T19:21:43.904Z

Reserved: 2023-09-06T17:40:06.142Z

Link: CVE-2023-41993

cve-icon Vulnrichment

Updated: 2024-08-29T13:17:27.813Z

cve-icon NVD

Status : Analyzed

Published: 2023-09-21T19:15:11.660

Modified: 2025-11-05T19:17:52.870

Link: CVE-2023-41993

cve-icon Redhat

Severity : Moderate

Publid Date: 2023-09-21T00:00:00Z

Links: CVE-2023-41993 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses