EXPOSURES › CVE-2022-48503
CVE-2022-48503
HIGH ⌖ ON CISA KEV · EXPLOITEDApple products with macOS, iOS, tvOS, Safari, and watchOS may allow arbitrary code execution due to an unspecified vulnerability in JavaScriptCore.
Apple's macOS, iOS, tvOS, Safari, and watchOS are affected by an unspecified vulnerability in JavaScriptCore that could lead to arbitrary code execution. Users should cease using these end-of-life and end-of-service products.
Shame score — Unspecified vulnerability leading to arbitrary code execution in critical Apple products.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Apple macOS, iOS, tvOS, Safari, and watchOS contain an unspecified vulnerability in JavaScriptCore that when processing web content may lead to arbitrary code execution. The impacted product could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.