This issue was addressed by using HTTPS when sending information over the network. This issue is fixed in macOS Sequoia 15.2, iOS 18.2 and iPadOS 18.2, iPadOS 17.7.3, visionOS 2.2. An attacker in a privileged network position may be able to alter network traffic.
CVE ID: CVE-2024-54492
CVSS Base Severity: LOW
CVSS Base Score: 0.0
Vendor: Apple
Product: visionOS
EPSS Score: 0.05% (probability of being exploited)
EPSS Percentile: 25.16% (scored less or equal to compared to others)
EPSS Date: 2025-02-04 (when was this score calculated)