#VU60039 Information disclosure in Apple iOS and iPadOS - CVE-2022-22594
Published: January 26, 2022
Apple iOS
iPadOS
Apple Inc.
Description
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to a cross-origin issue in the IndexDB API within the WebKit Storage. A remote attacker can trick the victim to visit a specially crafted website and gain access to sensitive information, locally stored by WebKit.