Actively Exploited in the Wild

This vulnerability is being actively exploited in the wild.

Apple WebKit Memory Corruption Vulnerability Allowing Arbitrary Code Execution

Vulnerability

A memory corruption vulnerability has been identified in the WebKit component of multiple Apple products, including macOS Ventura, iOS 16.4, iPadOS 16.4, and iOS 15.7.7 and iPadOS 15.7.7. This vulnerability arises from improper state management when processing web content, which may lead to arbitrary code execution. Notably, there are reports suggesting that this issue may have been actively exploited in the wild on certain versions of iOS prior to 15.7.

Impact

Exploitation of this vulnerability allows for arbitrary code execution, potentially with kernel privileges, depending on the context.

Remediation

Users can update to the latest versions of macOS Ventura, iOS 16.4, iPadOS 16.4, iOS 15.7.7, and iPadOS 15.7.7 to address this vulnerability.

Added: May 15, 2026, 11:19 AM
Updated: May 15, 2026, 11:19 AM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
7.5
exploitability
5.5
remediation
7.7
relevance
0.0
threat
8.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.