PT-2023-24976 · Telegram · Telegram

Published

2023-06-29

·

Updated

2024-11-27

·

CVE-2023-34658

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Telegram version 9.6.3
Description The issue allows attackers to hide critical information on the User Interface by calling the function SFSafariViewController. This can potentially lead to users being unaware of important details.
Recommendations For Telegram version 9.6.3, consider disabling the SFSafariViewController function as a temporary workaround until a patch is available. Restrict access to the User Interface to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Clickjacking

Weakness Enumeration

Related Identifiers

CVE-2023-34658

Affected Products

Telegram