Apple WebKit Use-After-Free Vulnerability Allowing Process Crashes

Vulnerability

A use-after-free vulnerability has been identified in the WebKit component of Apple products, including macOS Tahoe 26.2, iOS 26.2, iPadOS 26.2, and Safari 26.2. This vulnerability arises from improper memory management, which can be exploited by processing maliciously crafted web content, leading to an unexpected crash of the affected process.

Impact

Exploitation of this vulnerability causes a process crash, disrupting normal application functionality.

Remediation

Users can update to macOS Tahoe 26.2, iOS 26.2, iPadOS 26.2, or Safari 26.2 to address this vulnerability.

Added: Dec 17, 2025, 9:32 PM
Updated: Dec 17, 2025, 9:32 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
4.4
remediation
7.7
relevance
1.5
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.