The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.5. A remote attacker may be able to cause arbitrary javascript code execution.
[
{
"events": [
{
"introduced": "0"
},
{
"fixed": "13.5"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "2.40.5"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "2.40.5"
}
]
}
]
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-40397.json"