Apple iOS
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*, +1 more
A vulnerability in WebKit allows a malicious iframe to manipulate another website's download settings. This issue affects multiple Apple platforms, including iOS, iPadOS, macOS Tahoe, and visionOS, all in version 26.5. The vulnerability arises from improper user interface management, which could be exploited to interfere with file downloads.
Exploitation of this vulnerability could lead to unauthorized changes in download behavior, potentially causing files to be downloaded without user consent or knowledge.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.