Apple iOS
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*
- < 16.7.1
This vulnerability is being actively exploited in the wild.
A vulnerability in WebKit, the rendering engine used by Safari and other applications, has been identified. This issue involves an out-of-bounds read that could lead to the unintentional disclosure of sensitive information when processing maliciously crafted web content. The vulnerability is present in multiple Apple products, including iOS, iPadOS, macOS, and Safari, and affects several different versions and ranges. Notably, there are reports suggesting that this vulnerability may have been actively exploited in the wild, particularly in versions of iOS prior to 16.7.1.
Exploitation of this vulnerability could result in unauthorized access to sensitive information, potentially leading to further exploitation or attacks.
Users can update to the latest versions of iOS, iPadOS, macOS, and Safari. Instructions for updating these Apple products are available on the Apple Support website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.