CVE-2024-40787

This issue was addressed by adding an additional prompt for user consent. This issue is fixed in macOS Ventura 13.6.8, macOS Monterey 12.7.6, iOS 17.6 and iPadOS 17.6, watchOS 10.6, macOS Sonoma 14.6. A shortcut may be able to bypass Internet permission requirements.
References
Link Resource
http://seclists.org/fulldisclosure/2024/Jul/16 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2024/Jul/18 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2024/Jul/19 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2024/Jul/20 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2024/Jul/21 Mailing List Third Party Advisory
https://support.apple.com/en-us/HT214117 Vendor Advisory
https://support.apple.com/en-us/HT214118 Vendor Advisory
https://support.apple.com/en-us/HT214119 Vendor Advisory
https://support.apple.com/en-us/HT214120 Vendor Advisory
https://support.apple.com/en-us/HT214124 Vendor Advisory
http://seclists.org/fulldisclosure/2024/Jul/16 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2024/Jul/18 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2024/Jul/19 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2024/Jul/20 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2024/Jul/21 Mailing List Third Party Advisory
https://support.apple.com/en-us/HT214117 Vendor Advisory
https://support.apple.com/en-us/HT214118 Vendor Advisory
https://support.apple.com/en-us/HT214119 Vendor Advisory
https://support.apple.com/en-us/HT214120 Vendor Advisory
https://support.apple.com/en-us/HT214124 Vendor Advisory
https://support.apple.com/kb/HT214117
https://support.apple.com/kb/HT214118
https://support.apple.com/kb/HT214119
https://support.apple.com/kb/HT214120
https://support.apple.com/kb/HT214124
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

04 Nov 2025, 18:16

Type Values Removed Values Added
References
  • () https://support.apple.com/kb/HT214117 -
  • () https://support.apple.com/kb/HT214118 -
  • () https://support.apple.com/kb/HT214119 -
  • () https://support.apple.com/kb/HT214120 -
  • () https://support.apple.com/kb/HT214124 -

Information

Published : 2024-07-29 23:15

Updated : 2025-11-04 18:16


NVD link : CVE-2024-40787

Mitre link : CVE-2024-40787

CVE.ORG link : CVE-2024-40787


JSON object : View

Products Affected

apple

  • iphone_os
  • watchos
  • macos
  • ipados