CVE-2023-37450Patch(apple / ipados)

LOWCVSS 8.8 · HIGHCISA KEV

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch apple ipados systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

The issue was addressed with improved checks. This issue is fixed in iOS 16.6 and iPadOS 16.6, Safari 16.5.2, tvOS 16.6, macOS Ventura 13.5, watchOS 9.6. Processing web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.

1.5/ 10 priority

Sources & remediation

Listed in the CISA Known Exploited Vulnerabilities catalog. Federal remediation due date: 2023-08-03. Apply updates per vendor instructions or discontinue use of the product if updates are unavailable.

Priority

LOW

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • ipados
  • iphone_os
  • macos
  • safari

Threat summary

  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Affected systems

Products
ipadosiphone_osmacossafaritvoswatchoswebkitgtk\+

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-03-17: 1Patch / Workaround · 2026-03-17: 1Technical Details · 2026-03-17: 103-17
Signal classification1 categories
Patch
1100.0%
Referenced assets1 URL
Full discourse1 post
  • wayr today@wayrtoday
    Patch

    The patch mitigates zero-day WebKit flaw CVE-2023-37450, which could permit arbitrary code execution via malicious web content. https://wayr.today/apple-releases-background-security-update-to-address-safari-vulnerability/

    Post summary

    Apple released a patch addressing CVE-2023-37450, a zero‑day WebKit flaw that could enable arbitrary code execution through malicious web content.

    00000101
    3 followersView on X
CPE platform detail7 entries

7 of 7 entries

PartVendorProductVersionTarget SWTarget HW
OSappleipados---
OSappleiphone_os---
OSapplemacos---
Appapplesafari---
OSappletvos---
OSapplewatchos---
Appwebkitgtkwebkitgtk\+---

Explore more