Medium severity4.3NVD Advisory· Published Aug 17, 2026· Updated Aug 25, 2026
CVE-2026-28984
CVE-2026-28984
Description
The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, watchOS 26.5. Processing maliciously crafted web content may lead to an unexpected Safari crash.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- osv-coords4 versionspkg:rpm/almalinux/webkit2gtk3-develpkg:rpm/almalinux/webkit2gtk3-jscpkg:rpm/almalinux/webkit2gtk3-jsc-develpkg:rpm/almalinux/webkit2gtk3
< 2.54.0-1.el9_8+ 3 more
- (no CPE)range: < 2.54.0-1.el9_8
- (no CPE)range: < 2.54.0-1.el9_8
- (no CPE)range: < 2.54.0-1.el9_8
- (no CPE)range: < 2.54.0-1.el9_8
- Range: iOS 18.7.10 and iPadOS 18.7.10
Patches
Vulnerability mechanics
References
7News mentions
2- Apple Safari: Nine WebKit Vulnerabilities Patched in Same-Day DisclosureVypr Intelligence · Aug 17, 2026
- Apple Patches iOS and macOS, (Mon, Aug 17th)SANS Internet Storm Center · Aug 17, 2026