Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
1098 articles · 101864 vulns · 38/41 feeds (7d)
← Back to list
6.5
CVE-2026-28857PATCHED
apple · safari

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.4, iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4, visionOS 26.4. Processing maliciously crafted web content may lea

Description

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.4, iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4, visionOS 26.4. Processing maliciously crafted web content may lead to an unexpected process crash.

Affected Products

VendorProductVersions
applesafari< 26.4, < 26.4, < 26.4, < 26.4, < 26.4

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
open sourcewebkitgtkcert_advisory90%

References

  • https://support.apple.com/en-us/126792(Vendor Advisory)
  • https://support.apple.com/en-us/126794(Vendor Advisory)
  • https://support.apple.com/en-us/126799(Vendor Advisory)
  • https://support.apple.com/en-us/126800(Vendor Advisory)

Related News (1 articles)

Tier B
BSI Advisories3d ago
[NEU] [mittel] WebKitGTK: Mehrere Schwachstellen
→ No new info (linked only)
CVSS 3.16.5 MEDIUM
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CISA KEV❌ No
Actively exploited❌ No
Patch available
26.4
CWECWE-125, CWE-416, CWE-787
PublishedMar 25, 2026
Last enriched19h ago
Trending Score14
Source articles1
Independent1
Info Completeness9/14
Missing: epss, kev, exploit, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-20700EXPKEV
A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Tahoe 26.3, tvOS 26.3, visionOS 26.3, watchOS 26.3. An attacker with memo
Trending: 99
PRE-CVEEXP
Coruna iPhone Hacking Toolkit Exploiting iOS Vulnerabilities
Trending: 39
MEDIUMCVE-2026-20691
An authorization issue was addressed with improved state management. This issue is fixed in Safari 26.4, iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4, visionOS 26.4, watchOS 26.4. A maliciously crafted
Trending: 14
MEDIUMCVE-2026-28861
A logic issue was addressed with improved state management. This issue is fixed in Safari 26.4, iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4, visionOS 26.4. A malicious web
Trending: 14
MEDIUMCVE-2026-28871
A logic issue was addressed with improved checks. This issue is fixed in Safari 26.4, iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4. Visiting a maliciously crafted website m
Trending: 14

Pin to Dashboard

Verification

State: verified
Confidence: 100%

Vulnerability Timeline

CVE Published
Mar 25, 2026
Patch Available
Mar 26, 2026
Discovered by ZDM
Apr 1, 2026