CVE-2023-41074High· 8.8▾ TwilightThe issue was addressed with improved checks. This issue is fixed in tvOS 17, Safari 17, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. Processing web content may lead to arbitrary code execution.
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 48.4 · likelihood 0.8 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Stakeholder-Specific Vulnerability Categorization from CISA's ADP record at CVE.org: whether exploitation is observed, whether an attack can be automated, and how much of the system is at stake.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
3.9%
The issue was addressed with improved checks. This issue is fixed in tvOS 17, Safari 17, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. Processing web content may lead to arbitrary code execution.
safari < 17.0ipados < 17.0iphone_os < 17.0macos < 14.0tvos < 17.0watchos < 10.0debian_linux = 11.0debian_linux = 12.0fedora = 37Upgrade past the affected range:
safari 17.0ipados 17.0iphone_os 17.0macos 14.0tvos 17.0watchos 10.0Connected by shared product, vendor, weakness, or advisory.
CVE-2025-43529High· 8.8A use-after-free issue was addressed with improved memory management
CVE-2023-43000High· 8.8A use-after-free issue was addressed with improved memory management
CVE-2026-43715High· 8.8A use-after-free issue was addressed with improved memory management
CVE-2026-65332Medium· 4.3This issue was addressed through improved state management
CVE-2026-64718Medium· 5.5A use-after-free issue was addressed with improved memory management
CVE-2026-65390High· 8.8An integer overflow was addressed with improved input validation