CVE-2026-43707Active Exploitation(apple / ipados)

MEDIUMCVSS 6.5 · MEDIUM

Exploitation ongoing with high activity in latest observed window (1 mentions)

Immediate actions

  • Patch apple ipados systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

NVD description

A memory corruption issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content may lead to an unexpected process crash.

4.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119

Priority

MEDIUM

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • ipados
  • iphone_os
  • macos
  • safari

Threat summary

  • Active exploitation appears in 1 classified signals
  • Patch or workaround signal is available
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 2 signals
  • Peaked 1d ago at 1 mentions (2026-06-30); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Vendors
Products
ipadosiphone_osmacossafari

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-06-30: 1Mentions · 2026-07-20: 1Active Exploitation · 2026-06-30: 1Patch / Workaround · 2026-07-20: 1Technical Details · 2026-06-30: 1Technical Details · 2026-07-20: 106-3007-20
Signal classification2 categories
Active Exploitation
150.0%
Patch
150.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-06-301
Active Exploitation1
2026-07-201
Patch1
Full discourse2 posts
  • VulniPulse@vulnipulse
    Patch

    ⚠️ Red Hat Enterprise Linux 6 alert: CVE-2026-43707 (CVSS 6.5) Attackers could disrupt service or cause a denial of service. Upgrade to a vendor-listed fixed release. https://vulnipulse.com/advisories/linux-cve-2026-43707 #Linux #RedHatEnterpriseLinux6 #CyberSecurity #CVE

    Post summary

    The advisory highlights CVE‑2026‑43707, warns of denial‑of‑service risk, and directs users to upgrade to a vendor‑fixed release.

    0000024
    6 followersView on X
  • Aviatrix Threat Research Center@aviatrixtrc
    Active Exploitation

    TRC analysis shows attackers exploiting WebKit memory corruption vulnerabilities like CVE-2026-43707 to achieve arbitrary code execution through malicious websites. Once compromised, threat actors escalate privileges and move laterally across networks. Runtime segmentation helps contain post-compromise activity by limiting blast radius. 🔗 Full TRC analysis: https://aviatrix.ai/threat-research-center/apple-patches-30-ios-macos-safari-flaws-including-ai-discovered-webkit-bugs #WebKitSecurity #ZeroTrust

    Post summary

    The report confirms attackers are actively exploiting the WebKit memory corruption CVE‑2026‑43707 via malicious websites, achieving arbitrary code execution and subsequent privilege escalation, while highlighting containment measures such as runtime segmentation.

    0000053
    1.9K followersView on X
CPE platform detail4 entries

4 of 4 entries

PartVendorProductVersionTarget SWTarget HW
OSappleipados---
OSappleiphone_os---
OSapplemacos---
Appapplesafari---

Explore more