Memory Handling Vulnerability in Safari and Apple Devices
CVE-2026-28859
4.3MEDIUM
What is CVE-2026-28859?
A vulnerability exists in Safari and related Apple products that involves inadequate memory management. This flaw could permit malicious websites to bypass the browser's sandbox protections, enabling them to access restricted web content. This security risk has been mitigated in the updates of Safari 26.4 and various operating systems including iOS, iPadOS, macOS Tahoe, tvOS, visionOS, and watchOS.
Affected Version(s)
iOS and iPadOS 0 < 26.4
macOS 0 < 26.4
Safari 0 < 26.4