
A lot of offensive activities were identified targeting Apple Safari and other products (CVE-2026-28859) https://vuldb.com/?ctiid.352956
Post summary
The post reports that CVE‑2026‑28859 has been actively targeted in offensive activities.
Exploitation observed; activity peaked at 3 mentions and remains active
Recommended action window: Immediate (within 24h)
NVD description
The issue was addressed with improved memory handling. This issue is fixed in Safari 26.4, iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4, tvOS 26.4, visionOS 26.4, watchOS 26.4. A malicious website may be able to process restricted web content outside the sandbox.
Priority
MEDIUM
Exploitation
ACTIVE
PoC
NONE
Patch
AVAILABLE
Momentum
STABLE
If you run products in this scope, you should treat this CVE as relevant to your environment.
| Date | Total | Labels |
|---|
| 2026-03-25 | 3 | Disclosure1General1Patch1 |
| 2026-03-27 | 1 | Active Exploitation1 |
| 2026-04-01 | 1 | General1 |

A lot of offensive activities were identified targeting Apple Safari and other products (CVE-2026-28859) https://vuldb.com/?ctiid.352956
Post summary
The post reports that CVE‑2026‑28859 has been actively targeted in offensive activities.

There is a new vulnerability with elevated criticality in Apple Safari and other products (CVE-2026-28859) https://vuldb.com/?id.352956
Post summary
Apple Safari and other products have a newly disclosed CVE-2026-28859, noted as having elevated criticality.

CVE-2026-28859 WebKit Memory Handling Vulnerability in Apple Platforms Allows Restricte... https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-28859 Vulnerability Notification: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=3
Post summary
The entry cites CVE‑2026‑28859 and provides links to vulnerability details and alerts, but offers no proof‑of‑concept, exploit code, patch information, or detailed technical specs.

After analyzing 28% of vulnerabilities from past week, CVE-2026-28859 has 11 articles published from different internet sources, no other cve has these many articles. More information here: https://cves.st00ee.com/ #vulnerability #CyberSecurity #ThreatIntel #CVE #SecurityAlert
Post summary
The post highlights that CVE-2026-28859 has attracted 11 articles, indicating notable attention, but provides no concrete details on exploitation, patching, or technical aspects.

🚨 Apple users: A memória do Safari/WebKit está vulnerável! Um site malicioso pode contornar o sandbox, comprometendo sua segurança. Atualize para Safari 26.4 e outros sistemas imediatamente! 🛡️ #Cybersecurity #AppleSecurity #UpdateNow https://www.tenable.com/cve/CVE-2026-28859
Post summary
A memory bug in Safari/WebKit can bypass the sandbox, and users are urged to upgrade to Safari 26.4 or later to mitigate the risk.
7 of 7 entries
| Part | Vendor | Product | Version | Target SW | Target HW |
|---|---|---|---|---|---|
| OS | apple | ipados | - | - | - |
| OS | apple | iphone_os | - | - | - |
| OS | apple | macos | - | - | - |
| App | apple | safari | - | - | - |
| OS | apple | tvos | - | - | - |
| OS | apple | visionos | - | - | - |
| OS | apple | watchos | - | - | - |