Apple WebKit Address Bar Spoofing Vulnerability

Vulnerability

A vulnerability in WebKit, the engine behind the Safari browser, allows for address bar spoofing. This issue is present in iOS and iPadOS versions prior to 18.6. The vulnerability could be exploited by visiting a malicious website, potentially leading to misleading information in the address bar.

Impact

Exploitation of this vulnerability could cause the address bar to display incorrect information, potentially misleading users about the authenticity of the website they are visiting.

Remediation

Users can update to iOS 18.6 or iPadOS 18.6 to address this vulnerability.

Added: Jul 30, 2025, 1:29 AM
Updated: Jul 30, 2025, 1:29 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
4.4
remediation
7.7
relevance
0.3
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.