CVE-2026-43738Medium· 5.5▾ SunlitThe issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. Processing a maliciously crafted asset c…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 30.3 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Stakeholder-Specific Vulnerability Categorization from CISA's ADP record at CVE.org: whether exploitation is observed, whether an attack can be automated, and how much of the system is at stake.
Exploit-prediction probability, daily snapshots since Sep 14.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.2%
The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. Processing a maliciously crafted asset catalog may result in disclosure of process memory.
macos >= 14.0, < 14.8.8macos >= 15.0, < 15.7.8Upgrade past the affected range:
macos 15.7.8Connected by shared product, vendor, weakness, or advisory.
CVE-2026-43698High· 7.8An injection issue was addressed with improved validation
CVE-2026-65365Medium· 6.5An out-of-bounds read was addressed with improved bounds checking
CVE-2026-43763Medium· 5.5A permissions issue was addressed by removing the vulnerable code
CVE-2026-84516High· 8.1An out-of-bounds read was addressed with improved bounds checking
CVE-2026-65364High· 7.5An out-of-bounds read was addressed with improved bounds checking
CVE-2026-86900Medium· 6.5An out-of-bounds read issue was addressed with improved input validation