
Apple fixed two vulnerabilities I reported affecting Safari/WebKit: CVE-2026-28953 and CVE-2026-28901. Sometimes mitigations can create new attack surfaces. https://support.apple.com/en-us/127110
Post summary
The author reports that Apple has fixed two Safari/WebKit vulnerabilities (CVE-2026-28953 & CVE-2026-28901) and points to an Apple support advisory for details.

