VDB
GCVE-110-NCSC-2026-214
GCVE-110-NCSC-2026-214
Advisory PublishedCVSS 6.5/10
An out-of-bounds access vulnerability causing potential process crashes when processing malicious web content was fixed with improved bounds checking in Safari 26.5.2, iOS 26.5.2, iPadOS 26.5.2, and macOS Tahoe 26.5.2.
Weaknesses (CWE)
CWE-125Out-of-bounds ReadCWE-416Use After FreeCWE-346Origin Validation ErrorCWE-843Access of Resource Using Incompatible Type ('Type Confusion')CWE-415Double FreeCWE-121Stack-based Buffer OverflowCWE-22Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')CWE-362Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')CWE-787Out-of-bounds Write
Risk Scores
CVSS 3.1
6.5/10
Medium · CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Apple | vers:unknown/* | — | — |
Aliases
CVE-2026-28979CVE-2026-39868CVE-2026-39872CVE-2026-43663CVE-2026-43676CVE-2026-43699CVE-2026-43700CVE-2026-43701CVE-2026-43703CVE-2026-43704CVE-2026-43705CVE-2026-43706CVE-2026-43707CVE-2026-43708CVE-2026-43709CVE-2026-43712CVE-2026-43713CVE-2026-43715CVE-2026-43716CVE-2026-43717CVE-2026-43718CVE-2026-43720CVE-2026-43721CVE-2026-43722CVE-2026-43724CVE-2026-43725CVE-2026-43726CVE-2026-43727CVE-2026-43731CVE-2026-43732CVE-2026-43734CVE-2026-43735CVE-2026-43740CVE-2026-43742CVE-2026-43743CVE-2026-43745CVE-2026-43746
References
Browse GCVE Records
74,557 records in the GCVE database · Updated July 23, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.