Search CVE reports


Toggle filters

1 – 10 of 776 results


CVE-2026-43712

Medium priority
Needs evaluation

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content may...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Needs evaluation Needs evaluation Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2026-43707

Medium priority
Needs evaluation

A memory corruption issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Needs evaluation Needs evaluation Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2026-43705

Medium priority
Needs evaluation

A type confusion issue was addressed with improved checks. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Needs evaluation Needs evaluation Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2026-43701

Medium priority
Needs evaluation

The issue was addressed with improved checks. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. A malicious website may be able to process restricted...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Needs evaluation Needs evaluation Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2026-43699

Medium priority
Needs evaluation

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Needs evaluation Needs evaluation Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2026-43676

Medium priority
Needs evaluation

An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Needs evaluation Needs evaluation Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2026-43663

Medium priority
Needs evaluation

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content may...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Needs evaluation Needs evaluation Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2026-39872

Medium priority
Needs evaluation

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content may...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Needs evaluation Needs evaluation Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2025-66286

Medium priority
Vulnerable

An API design flaw in WebKitGTK and WPE WebKit allows untrusted web content to unexpectedly perform IP connections, DNS lookups, and HTTP requests. Applications expect to use the WebPage::send-request signal handler to approve or...

5 affected packages

webkit2gtk, qtwebkit-opensource-src, qtwebkit-source, webkitgtk, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkit2gtk Vulnerable Vulnerable Ignored Ignored Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
webkitgtk Not in release Not in release Not in release Ignored
wpewebkit Not in release Not in release Ignored Ignored
Show less packages

CVE-2026-28871

Medium priority

Some fixes available 3 of 18

A logic issue was addressed with improved checks. This issue is fixed in Safari 26.4, iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4. Visiting a maliciously crafted website may lead to a...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Ignored Ignored Ignored
webkitgtk Not in release Not in release Not in release Ignored
wpewebkit Not in release Not in release Ignored Ignored
Show less packages