Path Handling Vulnerability in Apple Safari and MacOS Products
CVE-2026-43732

6.5MEDIUM

Key Information:

Vendor

Apple

Vendor
CVE Published:
29 June 2026

What is CVE-2026-43732?

A vulnerability exists in Apple's Safari, iOS, iPadOS, and macOS products due to improper path handling. When processing specially crafted web content, this issue could potentially expose sensitive user information. Apple has implemented improved validation measures in the latest versions to mitigate this risk and protect users from potential data breaches. It's crucial for users to update their systems to ensure enhanced security and safeguard their personal information.

Affected Version(s)

iOS and iPadOS 0 < 26.5.2

macOS 0 < 26.5.2

Safari 0 < 26.5.2

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.