Type Confusion Vulnerability in Safari and Apple Products
CVE-2026-43705

8.8HIGH

Key Information:

Vendor

Apple

Vendor
CVE Published:
29 June 2026

What is CVE-2026-43705?

A type confusion issue was identified in Safari and various Apple operating systems, which allowed for the processing of maliciously crafted web content. This flaw could lead to potential memory corruption, posing risks to users' data integrity and system stability. Apple has addressed this issue with enhanced validation checks in the latest versions of Safari, iOS, iPadOS, and macOS. Users are strongly encouraged to update their devices to ensure protection against this vulnerability.

Affected Version(s)

iOS and iPadOS 0 < 26.5.2

macOS 0 < 26.5.2

Safari 0 < 26.5.2

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.