Apple Safari
cpe:2.3:o:apple:safari:*:*:*:*:*:*:*
- < 26.4
A logic issue in WebKit was addressed with improved checks. This vulnerability is present in Safari 26.4, iOS 18.7.7 and iPadOS 18.7.7, as well as macOS Tahoe 26.4. Visiting a maliciously crafted website may lead to a cross-site scripting attack.
Exploitation of this vulnerability may lead to a cross-site scripting attack, allowing for the injection of malicious scripts that could be executed in the context of the user's browser.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.