Apple WebKit Denial-of-Service Vulnerability

Vulnerability

A denial-of-service vulnerability has been identified in the WebKit component of multiple Apple operating systems, including macOS Sequoia 15.6, iPadOS 17.7.9, iOS 18.6, tvOS 18.6, watchOS 11.6, and visionOS 2.6. This vulnerability arises from improper memory handling, which can be exploited by processing maliciously crafted web content, leading to unexpected app termination or a crash.

Impact

Exploitation of this vulnerability causes an unexpected crash of the Safari browser.

Reproduction

The vulnerability can be reproduced by visiting a malicious website that has been crafted to exploit this denial-of-service condition. This can be done using the Safari browser on the affected device.

Remediation

Users can update to the latest versions of macOS, iPadOS, iOS, tvOS, watchOS, or visionOS to address this vulnerability.

Added: Jul 30, 2025, 2:05 AM
Updated: Jul 30, 2025, 2:05 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.8
remediation
7.7
relevance
0.3
threat
1.6
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.