CVE-2026-43713
Received Received - Intake

Permissions Issue in Safari, iOS, and macOS Tahoe

Vulnerability report for CVE-2026-43713, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-06-29

Last updated on: 2026-06-29

Assigner: Apple Inc.

Description

A permissions issue was addressed with additional restrictions. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. Visiting a website may leak sensitive data.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-06-29
Last Modified
2026-06-29
Generated
2026-06-30
AI Q&A
2026-06-29
EPSS Evaluated
N/A
NVD

Affected Vendors & Products

Showing 4 associated CPEs
Vendor Product Version / Range
apple safari 26.5.2
apple ios 26.5.2
apple ipados 26.5.2
apple macos_tahoe 26.5.2

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability is a permissions issue in Apple software products such as Safari, iOS, iPadOS, and macOS Tahoe. It was addressed by adding additional restrictions to prevent unauthorized access.

If a user visits a malicious website, this vulnerability could cause sensitive data to be leaked.

Impact Analysis

The impact of this vulnerability is that visiting a malicious website could result in the leakage of sensitive data from your device.

Mitigation Strategies

To mitigate this vulnerability, update your Apple devices and software to the fixed versions: Safari 26.5.2, iOS 26.5.2, iPadOS 26.5.2, or macOS Tahoe 26.5.2.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-43713. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart