CVE-2025-43228
- EPSS 0.85%
- Veröffentlicht 29.07.2025 23:35:36
- Zuletzt bearbeitet 02.04.2026 19:20:09
The issue was addressed with improved UI. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6. Visiting a malicious website may lead to address bar spoofing.
CVE-2025-43214
- EPSS 0.96%
- Veröffentlicht 29.07.2025 23:35:14
- Zuletzt bearbeitet 15.07.2026 02:17:24
The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing maliciously crafted web content may lead to an unexpected Safar...
CVE-2025-31278
- EPSS 1.16%
- Veröffentlicht 29.07.2025 23:35:08
- Zuletzt bearbeitet 02.04.2026 19:19:59
The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, iPadOS 17.7.9, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing maliciously crafted web content may lead to memo...
CVE-2025-31277
- EPSS 1.48%
- Veröffentlicht 29.07.2025 23:29:31
- Zuletzt bearbeitet 21.09.2026 17:17:25
The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing maliciously crafted web content may lead to memory corruption.
CVE-2025-43240
- EPSS 0.89%
- Veröffentlicht 29.07.2025 23:29:26
- Zuletzt bearbeitet 02.04.2026 19:20:11
A logic issue was addressed with improved checks. This issue is fixed in Safari 18.6, macOS Sequoia 15.6. A download's origin may be incorrectly associated.
CVE-2025-31273
- EPSS 1.07%
- Veröffentlicht 29.07.2025 23:29:17
- Zuletzt bearbeitet 02.04.2026 19:19:59
The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing maliciously crafted web content may lead to memory corruption.
CVE-2025-43229
- EPSS 0.32%
- Veröffentlicht 29.07.2025 23:29:11
- Zuletzt bearbeitet 02.04.2026 19:20:09
This issue was addressed through improved state management. This issue is fixed in Safari 18.6, macOS Sequoia 15.6. Processing maliciously crafted web content may lead to universal cross site scripting.
CVE-2025-43213
- EPSS 0.73%
- Veröffentlicht 29.07.2025 23:29:10
- Zuletzt bearbeitet 15.07.2026 02:17:24
The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing maliciously crafted web content may lead to an unexpected Safar...
CVE-2025-6558
- EPSS 9.26%
- Veröffentlicht 15.07.2025 18:15:24
- Zuletzt bearbeitet 01.10.2026 12:00:53
Insufficient validation of untrusted input in ANGLE and GPU in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CVE-2025-30466
- EPSS 0.28%
- Veröffentlicht 29.05.2025 21:34:27
- Zuletzt bearbeitet 02.04.2026 19:19:41
This issue was addressed through improved state management. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, visionOS 2.4. A website may be able to bypass Same Origin Policy.