Filtered by vendor Apple
Subscribe
Total
15322 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-17966 | 2 Apple, Google | 2 Macos, Chrome | 2026-08-03 | N/A | 6.2 MEDIUM |
| Inappropriate implementation in Views in Google Chrome on Mac prior to 151.0.7922.72 allowed a local attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Low) | |||||
| CVE-2026-17944 | 2 Apple, Google | 2 Iphone Os, Chrome | 2026-08-03 | N/A | 4.3 MEDIUM |
| Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Low) | |||||
| CVE-2026-17960 | 2 Apple, Google | 2 Iphone Os, Chrome | 2026-08-03 | N/A | 4.3 MEDIUM |
| Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to bypass no-referrer policy via a crafted HTML page. (Chromium security severity: Low) | |||||
| CVE-2026-17972 | 2 Apple, Google | 2 Iphone Os, Chrome | 2026-08-03 | N/A | 4.3 MEDIUM |
| Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low) | |||||
| CVE-2026-17826 | 2 Apple, Google | 2 Iphone Os, Chrome | 2026-08-03 | N/A | 3.1 LOW |
| Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium) | |||||
| CVE-2026-17703 | 2 Apple, Google | 2 Iphone Os, Chrome | 2026-08-03 | N/A | 6.5 MEDIUM |
| Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: High) | |||||
| CVE-2026-17996 | 2 Apple, Google | 2 Macos, Chrome | 2026-08-03 | N/A | 6.2 MEDIUM |
| Inappropriate implementation in Browser in Google Chrome on Mac prior to 151.0.7922.72 allowed a local attacker to bypass navigation restrictions via a malicious file. (Chromium security severity: Low) | |||||
| CVE-2026-17684 | 2 Apple, Google | 2 Iphone Os, Chrome | 2026-08-03 | N/A | 9.6 CRITICAL |
| Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) | |||||
| CVE-2026-17669 | 2 Apple, Google | 2 Iphone Os, Chrome | 2026-08-03 | N/A | 9.6 CRITICAL |
| Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) | |||||
| CVE-2026-17849 | 2 Apple, Google | 2 Iphone Os, Chrome | 2026-07-31 | N/A | 4.3 MEDIUM |
| Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via malicious network traffic. (Chromium security severity: Medium) | |||||
| CVE-2026-17950 | 2 Apple, Google | 2 Macos, Chrome | 2026-07-31 | N/A | 8.8 HIGH |
| Inappropriate implementation in Safebrowsing in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code via a malicious file. (Chromium security severity: Low) | |||||
| CVE-2026-43767 | 1 Apple | 1 Macos | 2026-07-30 | N/A | 5.0 MEDIUM |
| The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to cause unexpected system termination. | |||||
| CVE-2026-43781 | 1 Apple | 1 Macos | 2026-07-30 | N/A | 4.7 MEDIUM |
| A race condition was addressed with improved state handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to access sensitive user data. | |||||
| CVE-2026-43806 | 1 Apple | 1 Macos | 2026-07-30 | N/A | 5.5 MEDIUM |
| A denial of service issue was addressed by removing the vulnerable code. This issue is fixed in macOS Tahoe 26.6. A local attacker may be able to cause a denial of service. | |||||
| CVE-2026-64698 | 1 Apple | 1 Macos | 2026-07-30 | N/A | 9.8 CRITICAL |
| The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to cause unexpected system termination or read kernel memory. | |||||
| CVE-2026-64702 | 1 Apple | 1 Macos | 2026-07-30 | N/A | 9.8 CRITICAL |
| An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to break out of its sandbox. | |||||
| CVE-2026-64713 | 1 Apple | 7 Ipados, Iphone Os, Macos and 4 more | 2026-07-30 | N/A | 8.1 HIGH |
| This issue was addressed with improved checks. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Websites may know if the user has visited a given link. | |||||
| CVE-2026-43816 | 1 Apple | 6 Ipados, Iphone Os, Macos and 3 more | 2026-07-29 | N/A | 5.5 MEDIUM |
| An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to cause unexpected system termination. | |||||
| CVE-2026-43817 | 1 Apple | 6 Ipados, Iphone Os, Macos and 3 more | 2026-07-29 | N/A | 5.5 MEDIUM |
| An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to cause unexpected system termination. | |||||
| CVE-2026-43792 | 1 Apple | 2 Macos, Safari | 2026-07-29 | N/A | 6.5 MEDIUM |
| An authorization issue was addressed with improved state management. This issue is fixed in Safari 26.6, macOS Tahoe 26.6. An app may be able to access sensitive user data. | |||||
