Medium severity6.5NVD Advisory· Published Jun 29, 2026· Updated Jul 27, 2026
CVE-2026-43713
CVE-2026-43713
Description
A permissions issue was addressed with additional restrictions. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. Visiting a website may leak sensitive data.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
18= 26.5.2+ 1 more
- (no CPE)range: = 26.5.2
- cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*range: <26.5.2
= 26.5.2+ 1 more
- (no CPE)range: = 26.5.2
- cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*range: <26.5.2
- Range: = 26.5.2
- Range: = 26.5.2
- Range: = 26.6
- Range: = 26.6
- Range: = 26.6
- osv-coords7 versionspkg:rpm/opensuse/webkit2gtk3-soup2&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/webkit2gtk4&distro=openSUSE%20Leap%2016.0pkg:rpm/almalinux/webkit2gtk3pkg:rpm/almalinux/webkit2gtk3-develpkg:rpm/almalinux/webkit2gtk3-jsc-develpkg:rpm/almalinux/webkit2gtk3-jscpkg:rpm/opensuse/webkit2gtk3&distro=openSUSE%20Leap%2016.0
< 2.52.5-160000.1.1+ 6 more
- (no CPE)range: < 2.52.5-160000.1.1
- (no CPE)range: < 2.52.5-160000.1.1
- (no CPE)range: < 2.52.5-1.el9_8
- (no CPE)range: < 2.52.5-1.el9_8
- (no CPE)range: < 2.52.5-1.el9_8
- (no CPE)range: < 2.52.5-1.el9_8
- (no CPE)range: < 2.52.5-160000.1.1
Patches
Vulnerability mechanics
References
6- support.apple.com/en-us/127594nvdVendor Advisory
- support.apple.com/en-us/127595nvdVendor Advisory
- support.apple.com/en-us/127685nvdVendor Advisory
- support.apple.com/en-us/128068nvd
- support.apple.com/en-us/128069nvd
- support.apple.com/en-us/128070nvd
News mentions
2- Apple Patches Everything (July 2026), (Wed, Jul 29th)SANS Internet Storm Center · Jul 29, 2026
- Webkitgtk: 22 Vulnerabilities Disclosed Together, Threatening Application SecurityVypr Intelligence · Jul 10, 2026