November 21, 2024 · Applied Cybernetics Group
CVE-2024-44308 — Apple Multiple Products
Apple Multiple Products Code Execution Vulnerability
- Added to KEV
2024-11-21- Federal due date
2024-12-12- Vendor
- Apple
- Product
- Multiple Products
- EPSS
- 76.9th percentile (score 0.010, as of
2026-06-08) - NVD CVSS v3.1
- —
- Ransomware use
- Unknown
- Upstream
- https://nvd.nist.gov/vuln/detail/CVE-2024-44308
CISA short description
Apple iOS, macOS, and other Apple products contain an unspecified vulnerability when processing maliciously crafted web content that may lead to arbitrary code execution.
Required action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.