Websites may know if the user has visited a given link
This issue was addressed with improved checks.
WebKit CVEs from Apple's Safari security release pages, cross-referenced to the public WebKit fix commit and, when covered, to the WebKit Weekly analysis of that fix.
Matching is by WebKit Bugzilla number — Apple exposes it on every WebKit CVE
entry, and WebKit commits include the same ID as a
bugs.webkit.org/show_bug.cgi?id=… reference. Unmatched CVEs are
shown too: they usually mean the fix commit is still under Bugzilla embargo.
Websites may know if the user has visited a given link
This issue was addressed with improved checks.
Visiting a website that frames malicious content may lead to UI spoofing
The issue was addressed with improved UI.
Maliciously crafted web content may violate iframe sandboxing policy
A permissions issue was addressed with improved validation.
Processing maliciously crafted web content may lead to an unexpected Safari crash
A use-after-free issue was addressed with improved memory management.
Processing maliciously crafted web content may lead to an unexpected Safari crash
A memory corruption issue was addressed with improved state management.
Visiting a website may lead to an app denial-of-service
This issue was addressed through improved state management.
An app may be able to read files outside of its sandbox
An access issue was addressed with improved access restrictions.
Processing maliciously crafted web content may disclose sensitive user information
A cross-origin issue was addressed with improved tracking of security origins.
A malicious website may exfiltrate data cross-origin
The issue was addressed with improved checks.
Processing maliciously crafted web content may lead to an unexpected process crash
A use-after-free issue was addressed with improved memory management.
Processing maliciously crafted web content may disclose sensitive user information
A path handling issue was addressed with improved validation.
Processing maliciously crafted web content may lead to memory corruption
A use-after-free issue was addressed with improved memory management.
Processing maliciously crafted web content may lead to an unexpected Safari crash
A use-after-free issue was addressed with improved memory management.
A malicious website may be able to process restricted web content outside the sandbox
The issue was addressed with improved input validation.
Processing maliciously crafted web content may lead to an unexpected process crash
The issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to an unexpected Safari crash
The issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to an unexpected Safari crash
An out-of-bounds access issue was addressed with improved bounds checking.
Processing maliciously crafted web content may result in the disclosure of process memory
The issue was addressed with improved memory handling.
Visiting a website may leak sensitive data
A permissions issue was addressed with additional restrictions.
A malicious website may exfiltrate data cross-origin
The issue was addressed with improved input validation.
Processing maliciously crafted web content may lead to an unexpected process crash
A memory corruption issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to memory corruption
A type confusion issue was addressed with improved checks.
A malicious website may be able to process restricted web content outside the sandbox
The issue was addressed with improved checks.
Processing maliciously crafted web content may lead to an unexpected Safari crash
An out-of-bounds write issue was addressed with improved input validation.
Processing maliciously crafted web content may prevent Content Security Policy from being enforced
A validation issue was addressed with improved logic.
Processing maliciously crafted web content may prevent Content Security Policy from being enforced
The issue was addressed with improved input validation.
Processing maliciously crafted web content may disclose sensitive user information
This issue was addressed with improved access restrictions.
Processing maliciously crafted web content may lead to an unexpected Safari crash
The issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to an unexpected process crash
The issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to an unexpected process crash
A use-after-free issue was addressed with improved memory management.
An app may be able to access sensitive user data
This issue was addressed with improved data protection.
Processing maliciously crafted web content may lead to an unexpected process crash
The issue was addressed with improved input validation.
Processing maliciously crafted web content may lead to an unexpected Safari crash
A use-after-free issue was addressed with improved memory management.
A malicious iframe may use another website’s download settings
The issue was addressed with improved UI handling.
Processing maliciously crafted web content may prevent Content Security Policy from being enforced
This issue was addressed through improved state management.
Processing maliciously crafted web content may bypass Same Origin Policy
A cross-origin issue in the Navigation API was addressed with improved input validation.
Visiting a maliciously crafted website may lead to a cross-site scripting attack
A logic issue was addressed with improved checks.
Processing maliciously crafted web content may lead to an unexpected process crash
The issue was addressed with improved memory handling.
A malicious website may be able to access script message handlers intended for other origins
A logic issue was addressed with improved state management.
A malicious website may be able to process restricted web content outside the sandbox
The issue was addressed with improved memory handling.
A remote attacker may be able to cause a denial-of-service
The issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to an unexpected process crash
This issue was addressed through improved state management.
A website may be able to track users through Safari web extensions
This issue was addressed through improved state management.
Processing maliciously crafted web content may lead to an unexpected process crash
The issue was addressed with improved memory handling.
An app may be able to access sensitive user data
The issue was addressed with additional permissions checks.
Processing maliciously crafted web content may lead to an unexpected Safari crash
A type confusion issue was addressed with improved state handling.
Processing maliciously crafted web content may lead to an unexpected process crash
A use-after-free issue was addressed with improved memory management.
Processing maliciously crafted web content may lead to an unexpected process crash
The issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to an unexpected process crash
A buffer overflow issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to an unexpected process crash
A race condition was addressed with improved state handling.
Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 was also issued in response to this report.
A use-after-free issue was addressed with improved memory management.
Processing maliciously crafted web content may lead to memory corruption. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-43529 was also issued in response to this report.
A memory corruption issue was addressed with improved validation.
Processing maliciously crafted web content may disclose internal states of the app
A memory initialization issue was addressed with improved memory handling.
A malicious website may exfiltrate data cross-origin
The issue was addressed with improved checks.
Processing maliciously crafted web content may lead to an unexpected process crash
This issue was addressed through improved state management.
Processing maliciously crafted web content may lead to an unexpected process crash
This issue was addressed with improved checks.
Processing maliciously crafted web content may lead to an unexpected process crash
The issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to an unexpected process crash
This issue was addressed with improved checks
Processing maliciously crafted web content may lead to an unexpected Safari crash
A use-after-free issue was addressed with improved memory management.
Processing maliciously crafted web content may lead to memory corruption
The issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to an unexpected process crash
A use-after-free issue was addressed with improved memory management.
Processing maliciously crafted web content may lead to an unexpected process crash
A buffer overflow was addressed with improved bounds checking.
Processing maliciously crafted web content may lead to an unexpected process crash
Multiple issues were addressed by disabling array allocation sinking.
A website may be able to access sensor information without user consent
The issue was addressed with improved handling of caches.
Processing maliciously crafted web content may lead to an unexpected Safari crash
The issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to an unexpected process crash
The issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to an unexpected process crash
A correctness issue was addressed with improved checks.
Processing maliciously crafted web content may lead to memory corruption
The issue was addressed with improved memory handling.
A remote attacker may be able to view leaked DNS queries with Private Relay turned on
A logic issue was addressed with improved state management.
Processing maliciously crafted web content may lead to universal cross site scripting
This issue was addressed through improved state management.
Visiting a malicious website may lead to address bar spoofing
The issue was addressed with improved UI.
Processing maliciously crafted web content may disclose sensitive user information
This issue was addressed through improved state management.
Processing maliciously crafted web content may lead to memory corruption
The issue was addressed with improved memory handling.
A download's origin may be incorrectly associated
A logic issue was addressed with improved checks.
Processing maliciously crafted web content may lead to an unexpected Safari crash
The issue was addressed with improved memory handling.
Processing web content may lead to a denial-of-service
The issue was addressed with improved memory handling.
Processing maliciously crafted web content may disclose internal states of the app
An out-of-bounds read was addressed with improved input validation.
Processing maliciously crafted web content may lead to an unexpected Safari crash
A use-after-free issue was addressed with improved memory management.
Processing maliciously crafted web content may lead to an unexpected Safari crash
This is a vulnerability in open source code and Apple Software is among the affected projects. The CVE-ID was assigned by a third party. Learn more about the issue and CVE-ID at
A type confusion issue could lead to memory corruption
This issue was addressed with improved handling of floats.
Processing maliciously crafted web content may lead to memory corruption
The issue was addressed with improved checks.
Processing maliciously crafted web content may lead to memory corruption
The issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to an unexpected Safari crash
The issue was addressed with improved input validation.
Processing maliciously crafted web content may lead to an unexpected process crash
The issue was addressed with improved checks.
Processing maliciously crafted web content may lead to an unexpected Safari crash
A type confusion issue was addressed with improved state handling.
A malicious website may exfiltrate data cross-origin
The issue was addressed with improved checks.
Processing maliciously crafted web content may lead to an unexpected Safari crash
This issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to an unexpected Safari crash
The issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to an unexpected process crash
A buffer overflow issue was addressed with improved memory handling.
Loading a malicious iframe may lead to a cross-site scripting attack
A permissions issue was addressed with additional restrictions.
Processing maliciously crafted web content may lead to an unexpected Safari crash
A use-after-free issue was addressed with improved memory management.
A malicious website may be able to track users in Safari private browsing mode
This issue was addressed through improved state management.
Maliciously crafted web content may be able to break out of Web Content sandbox. This is a supplementary fix for an attack that was blocked in iOS 17.2. (Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 17.2.)
An out-of-bounds write issue was addressed with improved checks to prevent unauthorized actions.
Processing maliciously crafted web content may lead to memory corruption
The issue was addressed with improved checks.
A maliciously crafted webpage may be able to fingerprint the user
The issue was addressed with improved access restrictions to the file system.
Processing web content may lead to a denial-of-service
The issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to an unexpected process crash
This issue was addressed through improved state management.
Processing maliciously crafted web content may lead to an unexpected process crash
The issue was addressed with improved checks.
Processing maliciously crafted web content may lead to an unexpected process crash
The issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to memory corruption
A type confusion issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to memory corruption
The issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to a cross site scripting attack. Apple is aware of a report that this issue may have been actively exploited on Intel-based Mac systems.
A cookie management issue was addressed with improved state management.
Cookies belonging to one origin may be sent to another origin
A cookie management issue was addressed with improved state management.
Processing maliciously crafted web content may prevent Content Security Policy from being enforced
The issue was addressed with improved checks.
Processing maliciously crafted web content may lead to an unexpected process crash
A memory corruption issue was addressed with improved input validation.
A malicious website may exfiltrate data cross-origin
A cookie management issue was addressed with improved state management.
Processing maliciously crafted web content may lead to an unexpected process crash
The issue was addressed with improved checks.
Visiting a malicious website may lead to address bar spoofing
The issue was addressed with improved UI.
A malicious website may exfiltrate data cross-origin
A cross-origin issue existed with "iframe" elements. This was addressed with improved tracking of security origins.
Processing maliciously crafted web content may lead to universal cross site scripting
This issue was addressed through improved state management.
Processing web content may lead to a denial-of-service
The issue was addressed with improved memory handling.
Processing maliciously crafted web content may lead to an unexpected process crash
A use-after-free issue was addressed with improved memory management.
Processing maliciously crafted web content may lead to an unexpected process crash
An out-of-bounds read was addressed with improved bounds checking.
Processing maliciously crafted web content may lead to a cross site scripting attack
This issue was addressed with improved checks.
Processing maliciously crafted web content may lead to an unexpected process crash
An out-of-bounds access issue was addressed with improved bounds checking.
Private Browsing tabs may be accessed without authentication
This issue was addressed through improved state management.
Processing maliciously crafted web content may lead to an unexpected process crash
The issue was addressed with improved checks.
A user may be able to bypass some web content restrictions
An issue in the handling of URL protocols was addressed with improved logic.
Processing a file may lead to unexpected app termination or arbitrary code execution
The issue was addressed with improved checks.
An attacker with arbitrary read and write capability may be able to bypass Pointer Authentication
The issue was addressed with improved checks.
A maliciously crafted webpage may be able to fingerprint the user
The issue was addressed by adding additional logic.
Processing web content may lead to arbitrary code execution
The issue was addressed with improved memory handling.
A maliciously crafted webpage may be able to fingerprint the user
This issue was addressed with improvements to the noise injection algorithm.
Processing maliciously crafted web content may lead to arbitrary code execution
An integer overflow was addressed with improved input validation.
Processing maliciously crafted web content may lead to arbitrary code execution
The issue was addressed with improved bounds checks.
Processing web content may lead to a denial-of-service
The issue was addressed with improved memory handling.
A malicious website may exfiltrate audio data cross-origin
The issue was addressed with improved UI handling.
Processing maliciously crafted web content may prevent Content Security Policy from being enforced
A logic issue was addressed with improved validation.
A maliciously crafted webpage may be able to fingerprint the user
An injection issue was addressed with improved validation.
Processing maliciously crafted web content may prevent Content Security Policy from being enforced
A logic issue was addressed with improved state management.