CVE-2025-43480
04.11.2025, 02:15
The issue was addressed with improved checks. This issue is fixed in Safari 26.1, visionOS 26.1, watchOS 26.1, iOS 26.1 and iPadOS 26.1, tvOS 26.1. A malicious website may exfiltrate data cross-origin.Enginsight
| Vendor | Product | Version |
|---|---|---|
| apple | safari | 𝑥 < 26.1 |
| apple | ipados | 𝑥 < 26.1 |
| apple | iphone_os | 𝑥 < 26.1 |
| apple | tvos | 𝑥 < 26.1 |
| apple | visionos | 𝑥 < 26.1 |
| apple | watchos | 𝑥 < 26.1 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| webkitgtk |
| ||||||||||||||
| webkit2gtk |
| ||||||||||||||
| qtwebkit-source |
| ||||||||||||||
| qtwebkit-opensource-src |
| ||||||||||||||
| wpewebkit |
|
Common Weakness Enumeration