VDB
DEBIAN-CVE-2023-40451
DEBIAN-CVE-2023-40451
PUBLISHED
CVSS 8.800000190734863 HIGH
This issue was addressed with improved iframe sandbox enforcement. This issue is fixed in Safari 17. An attacker with JavaScript execution may be able to execute arbitrary code.
Risk Scores
CVSS v3.1
8.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian:13 | webkit2gtk | 0, 0, 0 |
| Debian:12 | wpewebkit | 2.40.1-1, 2.40.3-1, 2.40.5-1 |
| Debian:11 | webkit2gtk | 2.37.1-1, 2.32.3-1, 2.32.4-1 |
| Debian:11 | wpewebkit | 2.40.2-1, 2.42.1-1, * |
| Debian:14 | webkit2gtk | 0, 0, 0 |
| Debian:14 | wpewebkit | 0, 0, 0 |
| Debian:13 | wpewebkit | 0, 0, 0 |
| Debian:12 | webkit2gtk | *, 0, 2.40.1-1 |
Timeline
- Sep 27, 2023 CVE Published
- Apr 28, 2026 CVE Updated