CVE-2026-86898Medium· 5.4▾ SunlitA logic issue was addressed with improved state management. This issue is fixed in Safari 27, iOS 27 and iPadOS 27, macOS Golden Gate 27, visionOS 27. Opening a maliciously crafted webarchive file may lead to universal cross-site scripting.
▾ Sunlit zone — Low / medium · no exploitation signal
impact 29.7 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Stakeholder-Specific Vulnerability Categorization from CISA's ADP record at CVE.org: whether exploitation is observed, whether an attack can be automated, and how much of the system is at stake.
Exploit-prediction probability, daily snapshots since Sep 15.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
0.1%
— → 5.4
none → medium
Last analysed / modified upstream
0.1% → 0.2%
A logic issue was addressed with improved state management. This issue is fixed in Safari 27, iOS 27 and iPadOS 27, macOS Golden Gate 27, visionOS 27. Opening a maliciously crafted webarchive file may lead to universal cross-site scripting.
safari < 27.0ipados < 27.0iphone_os < 27.0macos < 27.0visionos < 27.0Upgrade past the affected range:
safari 27.0ipados 27.0iphone_os 27.0macos 27.0visionos 27.0Field changes observed since this record was first indexed.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-64718Medium· 5.5A use-after-free issue was addressed with improved memory management
CVE-2026-86897Medium· 5.5This issue was addressed with additional entitlement checks
CVE-2026-64753Medium· 6.5A permissions issue was addressed by removing the vulnerable code
CVE-2026-84635Medium· 6.5A logic issue was addressed with improved state management
CVE-2026-84518Medium· 4.3This issue was addressed through improved state management
CVE-2026-84624Medium· 5.5A permissions issue was addressed with improved path validation