Actively Exploited in the Wild

This vulnerability is being actively exploited in the wild.

Apple WebKit Memory Corruption Vulnerability Allowing Arbitrary Code Execution

Vulnerability

A memory corruption vulnerability has been identified in the WebKit component of multiple Apple operating systems, including iOS, iPadOS, macOS, watchOS, and tvOS. This vulnerability arises from improper state management, which can be exploited by processing maliciously crafted web content, leading to arbitrary code execution. Notably, there are reports suggesting that this vulnerability may have been actively exploited in the wild.

Impact

Exploitation of this vulnerability allows for arbitrary code execution on the affected device.

Remediation

Users can update to the latest versions of watchOS, iOS, iPadOS, tvOS, or macOS Big Sur to address this vulnerability. Specific update instructions can be found on the Apple Support website.

Added: May 15, 2026, 10:31 AM
Updated: May 15, 2026, 10:31 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
7.5
exploitability
5.5
remediation
7.7
relevance
0.0
threat
8.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.