VDB

GCVE-110-NCSC-2026-215

GCVE-110-NCSC-2026-215
Advisory PublishedCVSS 6.5/10
Vulnetix · Advisory published June 30, 2026
An out-of-bounds access vulnerability causing potential process crashes when processing malicious web content was fixed with improved bounds checking in Safari 26.5.2, iOS 26.5.2, iPadOS 26.5.2, and macOS Tahoe 26.5.2.

Weaknesses (CWE)

CWE-125Out-of-bounds ReadCWE-416Use After FreeCWE-346Origin Validation ErrorCWE-843Access of Resource Using Incompatible Type ('Type Confusion')CWE-415Double FreeCWE-121Stack-based Buffer OverflowCWE-22Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')CWE-362Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')CWE-787Out-of-bounds Write

Risk Scores

CVSS 3.1
6.5/10
Medium · CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Affected Products

VendorProductVersionsPlatforms
Applevers:unknown/*

References

advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory

Browse GCVE Records

73,873 records in the GCVE database · Updated July 20, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›