Unrated severityNVD Advisory· Published Jun 29, 2026· Updated Jul 27, 2026
CVE-2026-43735
CVE-2026-43735
Description
The issue was addressed with improved checks. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. A malicious website may exfiltrate data cross-origin.
Affected products
3- Range: 26.5.2
- Range: 26.5.2
- Range: 26.5.2
Patches
Vulnerability mechanics
References
6News mentions
1- Apple Patches Everything (July 2026), (Wed, Jul 29th)SANS Internet Storm Center · Jul 29, 2026