Actively Exploited in the Wild

This vulnerability is being actively exploited in the wild.

Apple Products Memory Corruption Vulnerability in FontParser Allowing Arbitrary Code Execution

Vulnerability

A memory corruption vulnerability has been identified in the FontParser component of multiple Apple products, including macOS, iOS, iPadOS, and watchOS. This vulnerability allows for arbitrary code execution when processing maliciously crafted font files. It affects several different versions and ranges across these operating systems.

Impact

Exploitation of this vulnerability can lead to arbitrary code execution on the affected device or system.

Remediation

Users can update to the latest versions of macOS, iOS, iPadOS, or watchOS to address this vulnerability. Specific update instructions can be found on the Apple Support website.

Added: May 15, 2026, 10:45 AM
Updated: May 15, 2026, 10:45 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
7.5
exploitability
5.3
remediation
7.7
relevance
0.0
threat
8.9
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.