Actively Exploited in the Wild

This vulnerability is being actively exploited in the wild.

Apple WebKit Arbitrary Code Execution Vulnerability

Vulnerability

A vulnerability in WebKit, the rendering engine used by Safari and other applications, allows for arbitrary code execution when processing maliciously crafted web content. This issue affects multiple Apple products, including iOS, iPadOS, macOS Ventura, Safari, and tvOS. The vulnerability arises from insufficient checks in WebKit's handling of web content, which could lead to memory corruption and exploitation. Apple is aware of reports suggesting that this vulnerability may have been actively exploited.

Impact

Exploitation of this vulnerability could lead to arbitrary code execution on the affected device or application.

Remediation

Users can upgrade to iOS 16.6, iPadOS 16.6, macOS Ventura 13.5, Safari 16.5.2, tvOS 16.6, or watchOS 9.6 to address this vulnerability.

Added: May 15, 2026, 11:22 AM
Updated: May 15, 2026, 11:22 AM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
7.5
exploitability
5.5
remediation
7.7
relevance
0.0
threat
8.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.