VYPR

rpm package

almalinux/webkit2gtk3

pkg:rpm/almalinux/webkit2gtk3

Vulnerabilities (300)

  • CVE-2026-64780MedAug 17, 2026
    affected < 2.54.0-1.el9_8fixed 2.54.0-1.el9_8

    The issue was addressed with improved checks. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, visionOS 27. Processing maliciously crafted web content may lead to an unexpected Safari crash.

  • CVE-2026-64779LowAug 17, 2026
    affected < 2.54.0-1.el9_8fixed 2.54.0-1.el9_8

    A memory corruption vulnerability was addressed with improved locking. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, visionOS 27. Processing maliciously crafted web content may lead to an unexpected Safari

  • CVE-2026-64778MedAug 17, 2026
    affected < 2.54.0-1.el9_8fixed 2.54.0-1.el9_8

    The issue was addressed with improved checks. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, tvOS 27, visionOS 27, watchOS 27. Visiting a maliciously crafted website may leak sensitive data.

  • CVE-2026-64715MedAug 17, 2026
    affected < 2.54.0-1.el9_8fixed 2.54.0-1.el9_8

    A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, tvOS 27, visionOS 27, watchOS 27. Processing maliciously crafted web content may lead to a

  • CVE-2026-43795MedAug 17, 2026
    affected < 2.54.0-1.el9_8fixed 2.54.0-1.el9_8

    The issue was addressed with improved memory handling. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, visionOS 27. Processing maliciously crafted web content may lead to an unexpected Safari crash.

  • CVE-2026-28984MedAug 17, 2026
    affected < 2.54.0-1.el9_8fixed 2.54.0-1.el9_8

    The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, watchOS 26.5. Processing maliciously crafted web content may lead to an unexpected Safa

  • CVE-2026-19176HigAug 6, 2026
    affected < 2.54.0-1.el9_8fixed 2.54.0-1.el9_8

    Use after free in Skia in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

  • CVE-2026-19173HigAug 6, 2026
    affected < 2.54.0-1.el9_8fixed 2.54.0-1.el9_8

    Out of bounds write in Skia in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

  • CVE-2026-19161LowAug 6, 2026
    affected < 2.54.0-1.el9_8fixed 2.54.0-1.el9_8

    Uninitialized Use in Skia in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)

  • CVE-2026-19154HigAug 6, 2026
    affected < 2.54.0-1.el9_8fixed 2.54.0-1.el9_8

    Use after free in Skia in Google Chrome on Android prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)

  • CVE-2026-64783HigJul 27, 2026
    affected < 2.54.0-1.el9_8fixed 2.54.0-1.el9_8

    A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content may lead to an unexpected Safari crash.

  • CVE-2026-64757HigJul 27, 2026
    affected < 2.54.0-1.el9_8fixed 2.54.0-1.el9_8

    A memory corruption issue was addressed with improved state management. This issue is fixed in Safari 26.6, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content may lead to an unexpecte

  • CVE-2026-64730MedJul 27, 2026
    affected < 2.54.0-1.el9_8fixed 2.54.0-1.el9_8

    The issue was addressed with improved UI. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Visiting a website that frames malicious content may lead to UI spoofing.

  • CVE-2026-64728MedJul 27, 2026
    affected < 2.54.0-1.el9_8fixed 2.54.0-1.el9_8

    A permissions issue was addressed with improved validation. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Maliciously crafted web content may violate iframe sandboxing policy.

  • CVE-2026-64718MedJul 27, 2026
    affected < 2.54.0-1.el9_8fixed 2.54.0-1.el9_8

    A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.6, Safari 27, iOS 26.6 and iPadOS 26.6, iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, visionOS 27, watchOS 26

  • CVE-2026-64713HigJul 27, 2026
    affected < 2.54.0-1.el9_8fixed 2.54.0-1.el9_8

    This issue was addressed with improved checks. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Websites may know if the user has visited a given link.

  • CVE-2026-43804MedJul 27, 2026
    affected < 2.54.0-1.el9_8fixed 2.54.0-1.el9_8

    This issue was addressed through improved state management. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, visionOS 26.6. Visiting a website may lead to an app denial-of-service.

  • CVE-2026-43745MedJun 29, 2026
    affected < 2.52.5-1.el9_8fixed 2.52.5-1.el9_8

    An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in Safari 26.5.2, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content ma

  • CVE-2026-43742MedJun 29, 2026
    affected < 2.52.5-1.el9_8fixed 2.52.5-1.el9_8

    A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content may lea

  • CVE-2026-43740MedJun 29, 2026
    affected < 2.52.5-1.el9_8fixed 2.52.5-1.el9_8

    The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content may result in the disclosure of process memory.

Page 2 of 15