Actively Exploited in the Wild
This vulnerability is being actively exploited in the wild.
Apple WebKit Arbitrary Code Execution Vulnerability
Vulnerability
A vulnerability in WebKit, the rendering engine used by Safari and other applications, allows for arbitrary code execution when processing maliciously crafted web content. This issue affects multiple Apple products, including iOS, iPadOS, macOS Ventura, Safari, and tvOS. The vulnerability arises from insufficient checks in WebKit's handling of web content, which could lead to memory corruption and exploitation. Apple is aware of reports suggesting that this vulnerability may have been actively exploited.
Impact
Exploitation of this vulnerability could lead to arbitrary code execution on the affected device or application.
Remediation
Users can upgrade to iOS 16.6, iPadOS 16.6, macOS Ventura 13.5, Safari 16.5.2, tvOS 16.6, or watchOS 9.6 to address this vulnerability.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
