Denial-of-Service Vulnerability in Safari and Apple Operating Systems
CVE-2026-43804

Currently unrated

Key Information:

Vendor

Apple

Vendor
CVE Published:
27 July 2026

What is CVE-2026-43804?

This vulnerability arises from improper state management within Safari and related Apple operating systems, which may result in a denial-of-service when a user visits a specially crafted website. Apple has patched this issue in the latest versions of its products, including Safari 26.6, iOS 26.6, and macOS Tahoe 26.6, enhancing overall security. Users are encouraged to update to the latest versions to mitigate potential risks associated with this vulnerability.

Affected Version(s)

iOS and iPadOS 0 < 26.6

macOS 0 < 26.6

Safari 0 < 26.6

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.