VDB
GCVE-110-NCSC-2026-215
GCVE-110-NCSC-2026-215
Advisory PublishedCVSS 6.5/10
An out-of-bounds access vulnerability causing potential process crashes when processing malicious web content was fixed with improved bounds checking in Safari 26.5.2, iOS 26.5.2, iPadOS 26.5.2, and macOS Tahoe 26.5.2.
Weaknesses (CWE)
CWE-125Out-of-bounds ReadCWE-416Use After FreeCWE-346Origin Validation ErrorCWE-843Access of Resource Using Incompatible Type ('Type Confusion')CWE-415Double FreeCWE-121Stack-based Buffer OverflowCWE-22Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')CWE-362Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')CWE-787Out-of-bounds Write
Risk Scores
CVSS 3.1
6.5/10
Medium · CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Apple | vers:unknown/* | — | — |
Aliases
CVE-2026-28979CVE-2026-39868CVE-2026-39872CVE-2026-43663CVE-2026-43676CVE-2026-43699CVE-2026-43700CVE-2026-43701CVE-2026-43703CVE-2026-43704CVE-2026-43705CVE-2026-43706CVE-2026-43707CVE-2026-43708CVE-2026-43709CVE-2026-43712CVE-2026-43713CVE-2026-43715CVE-2026-43716CVE-2026-43717CVE-2026-43718CVE-2026-43720CVE-2026-43721CVE-2026-43722CVE-2026-43724CVE-2026-43725CVE-2026-43726CVE-2026-43727CVE-2026-43731CVE-2026-43732CVE-2026-43734CVE-2026-43735CVE-2026-43740CVE-2026-43742CVE-2026-43743CVE-2026-43745CVE-2026-43746
References
Browse GCVE Records
73,873 records in the GCVE database · Updated July 20, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.