Description
This issue was addressed through improved state management. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to an unexpected Safari crash.
Published: 2026-08-17
Score: n/a
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

Processing maliciously crafted web content may lead to an unexpected Safari crash. This crash causes a denial of service, disrupting browsing and web‑based application use. It likely originates from inadequate state management within Safari’s rendering engine (inferred). The crash terminates the browser process but does not directly compromise data confidentiality or integrity. The effect is a loss of availability that could impair user productivity.

Affected Systems

Apple iOS, iPadOS, and macOS Tahoe are affected. Versions earlier than iOS 18.7.10, iPadOS 18.7.10, iOS 26.6.1, iPadOS 26.6.1, and macOS Tahoe 26.6.2 are not patched. The vulnerability is fixed in those versions and later releases.

Risk and Exploitability

No EPSS score is available. The vulnerability is not listed in the CISA KEV catalog. The CVSS score is unspecified. Based on the description, it is inferred that an attacker could embed crafted web pages in a site or email to trigger the crash, since Safari processes content from the Internet. The likelihood and potential impact remain uncertain until exploit activity is observed.

Generated by OpenCVE AI on August 18, 2026 at 00:11 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update iOS, iPadOS, and macOS Tahoe to at least iOS 18.7.10, iPadOS 18.7.10, iOS 26.6.1, iPadOS 26.6.1, macOS Tahoe 26.6.2, or newer releases.
  • Avoid opening or interacting with untrusted or suspicious web pages, particularly those from unknown sources.
  • Use network filtering or content blocking in Safari to reduce exposure to malicious content while on older, unpatched versions.

Generated by OpenCVE AI on August 18, 2026 at 00:11 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 18 Aug 2026 00:30:00 +0000

Type Values Removed Values Added
Title Safari Crash from Malicious Web Content
Weaknesses CWE-665

Mon, 17 Aug 2026 23:00:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple ios And Ipados
Apple macos
Vendors & Products Apple
Apple ios And Ipados
Apple macos

Mon, 17 Aug 2026 21:45:00 +0000

Type Values Removed Values Added
Description This issue was addressed through improved state management. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to an unexpected Safari crash.
References

Subscriptions

Apple Ios And Ipados Macos
cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-08-17T21:29:09.891Z

Reserved: 2026-07-22T00:45:02.635Z

Link: CVE-2026-65332

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-17T22:17:24.130

Modified: 2026-08-17T22:17:24.130

Link: CVE-2026-65332

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-18T00:15:03Z

Weaknesses