CNNVD-202511-2432 Information

CNNVD ID

CNNVD-202511-2432

CVE-2025-31266

  • CNNVD Published: 2025-11-21

Description (Chinese)

Apple Safari和Apple macOS都是美国苹果(Apple)公司的产品。Apple Safari是一款Web浏览器,是Mac OS X和iOS操作系统附带的默认浏览器。Apple macOS是一套专为Mac计算机所开发的专用操作系统。 Apple Safari 18.5之前版本和Apple macOS Sequoia 15.5之前版本存在安全漏洞,该漏洞源于域名显示截断不当,可能导致网站伪造弹出窗口标题中的域名。

Description (English)

Apple Safari and Apple MacOS are products of Apple. Apple Safari is a Web browser, a default browser attached to Mac OS X and iOS operating systems. Apple MacOS is a dedicated operating system developed for Mac computers. Prior to Apple Safari 18.5 and prior to Apple MacOS Sequoia 15.5, there was a security loophole, which stemmed from the inappropriate display of domain names and could lead to the forgery of domain names in the header of the pop-up window.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

苹果

Published

2025-11-21

Last Modified

2026-02-24

References

https://support.apple.com/en-us/122716 https://support.apple.com/en-us/122719 https://access.redhat.com/security/cve/cve-2025-31266

Patch

https://support.apple.com/en-us/122716

Share on: