VDB
CVE-2026-28984
CVE-2026-28984
PUBLISHED
CVSS 4.3 MEDIUM
Reported by apple · Published August 17, 2026
The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, watchOS 26.5. Processing maliciously crafted web content may lead to an unexpected Safari crash.
Risk Scores
CVSS 3.1
4.3
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apple | Safari | 0 |
| Apple | iOS and iPadOS | 0, 0 |
| Apple | macOS | 0 |
| Apple | tvOS | 0 |
| Apple | visionOS | 0 |
| Apple | watchOS | 0 |
| Apple | tvOS | 0 |
| Apple | Safari | 0 |
| Apple | watchOS | 0 |
| Apple | iOS and iPadOS | 0, 0, 0 |
| Apple | macOS | 0 |
| Apple | visionOS | 0 |
Timeline
- Aug 17, 2026 CVE Published
- Aug 22, 2026 Coalition ESS Score
- Aug 24, 2026 EPSS Score
- Aug 25, 2026 CVE Updated
- Aug 26, 2026 EPSS Score