Unrated severityNVD Advisory· Published Mar 25, 2026· Updated Apr 2, 2026
CVE-2026-28871
CVE-2026-28871
Description
A logic issue was addressed with improved checks. This issue is fixed in Safari 26.4, iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4. Visiting a maliciously crafted website may lead to a cross-site scripting attack.
Affected products
3- Range: 0
- Range: 0
- Apple/iOS and iPadOSv5Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4News mentions
0No linked articles in our index yet.