VYPR
Medium severity5.4NVD Advisory· Published Sep 27, 2023· Updated Jun 17, 2026

CVE-2023-40417

CVE-2023-40417

Description

A window management issue was addressed with improved state management. This issue is fixed in Safari 17, iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. Visiting a website that frames malicious content may lead to UI spoofing.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

14
  • Apple Inc./Safari3 versions
    cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*range: <17.0
    • (no CPE)range: 17
    • (no CPE)range: unspecified
  • Apple Inc./Ipados2 versions
    cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*range: <17.0
    • (no CPE)range: 17
  • cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
    Range: <17.0
  • Apple Inc./macOS3 versions
    cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*range: <14.0
    • (no CPE)range: Sonoma 14
    • (no CPE)range: unspecified
  • cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*range: <10.0
    • (no CPE)range: 10
    • (no CPE)range: unspecified
  • Apple Inc./iOSllm-fuzzy
    Range: 17
  • Range: unspecified

Patches

Vulnerability mechanics

References

11

News mentions

0

No linked articles in our index yet.