Skip to content
COOEY

EXPOSURES › CVE-2022-48503

CVE-2022-48503

HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2025-10-20 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2022-48503 ↗
⚡ RCE ⌖ EXPLOITED IN THE WILD SHAME 72/100 rceexploited-in-wildunpatched

Apple products with macOS, iOS, tvOS, Safari, and watchOS may allow arbitrary code execution due to an unspecified vulnerability in JavaScriptCore.

Apple's macOS, iOS, tvOS, Safari, and watchOS are affected by an unspecified vulnerability in JavaScriptCore that could lead to arbitrary code execution. Users should cease using these end-of-life and end-of-service products.

Shame score — Unspecified vulnerability leading to arbitrary code execution in critical Apple products.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

Apple macOS, iOS, tvOS, Safari, and watchOS contain an unspecified vulnerability in JavaScriptCore that when processing web content may lead to arbitrary code execution. The impacted product could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.