VDB

CVE-2026-43705

CVE-2026-43705 PUBLISHED CVSS 8.8 HIGH

Reported by apple · Published June 29, 2026

A type confusion issue was addressed with improved checks. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. Processing maliciously crafted web content may lead to memory corruption.

Risk Scores

CVSS 3.1
8.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
AppleSafari0
AppleiOS and iPadOS0
ApplemacOS0
AppleSafari0, 0
AppleiOS and iPadOS0, 0
ApplemacOS0, 0

Timeline

  • Jun 29, 2026 CVE Published
  • Jun 30, 2026 EPSS Score
  • Jun 30, 2026 Coalition ESS Score
  • Jun 30, 2026 CVE Updated
  • Jul 21, 2026 Distribution Patch
  • Jul 21, 2026 Security Advisory

References

Open in Interactive Console →
$ Console Community · 100/wk Open console ›