Input Validation Flaw in Safari and Apple Platforms by Apple
CVE-2026-43725

7.1HIGH

Key Information:

Vendor

Apple

Vendor
CVE Published:
29 June 2026

What is CVE-2026-43725?

A vulnerability exists in Safari and various Apple operating systems that allows malicious websites to potentially access restricted web content outside of their protected sandbox environment. This issue is addressed with improved input validation in the latest software updates, enhancing user security against such unauthorized exploits.

Affected Version(s)

iOS and iPadOS 0 < 26.5.2

macOS 0 < 26.5.2

Safari 0 < 26.5.2

References

CVSS V3.1

Score:
7.1
Severity:
HIGH
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.