Impact
The vulnerability is a use‑after‑free bug in Apple’s web content processing, triggered by maliciously crafted web pages. It has been addressed by improving memory management. The fix is included in Safari 26.6.1, iPadOS 18.7.10 and 26.6.1, macOS Tahoe 26.6.2, tvOS 27, visionOS 27, and watchOS 27, leading to a denial‑of‑service condition.
Affected Systems
Apple Safari, iOS, iPadOS, macOS, tvOS, visionOS, and watchOS devices running versions older than Safari 26.6.1, iOS 18.7.10, iOS 26.6.1, iPadOS 18.7.10, iPadOS 26.6.1, macOS Tahoe 26.6.2, tvOS 27, visionOS 27, or watchOS 27 are affected. Updated releases include Safari 26.6.1, iOS 18.7.10, iOS 26.6.1, iPadOS 18.7.10, iPadOS 26.6.1, macOS Tahoe 26.6.2, tvOS 27, visionOS 27, and watchOS 27.
Risk and Exploitability
The vulnerability is not listed in the CISA KEV catalog and has an EPSS score of < 1%, indicating a low but non‑zero exploitation probability. The CVSS score of 6.5 indicates a medium severity. It is inferred that an attacker would need to lure a user to a malicious website that serves specially crafted content, which could trigger the crash. Although the flaw does not provide direct remote code execution, it can be used to disrupt device operation and create a denial‑of‑service condition, especially if the crash occurs in a critical subsystem.
OpenCVE Enrichment