CVE-2025-43529
published 2025-12-17CVE-2025-43529: A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS…
PriorityP189high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
KEVITWEXPLOIT
CISA Known Exploited Vulnerabilitydue 2026-01-05
Exploited in the wild
EPSS
8.58%
94.5th percentile
A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, tvOS 26.2, visionOS 26.2, watchOS 26.2. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 was also issued in response to this report.
Affected
29 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_18.7.3_and_ipados | — | — |
| apple | ios_26.2_and_ipados | — | — |
| apple | ios_26.3_and_ipados | — | — |
| apple | ipados | < 18.7.3 | 18.7.3 |
| apple | ipados | < 26.3 | 26.3 |
| apple | ipados | >= 26.0 < 26.2 | 26.2 |
| apple | iphone_os | < 18.7.3 | 18.7.3 |
| apple | iphone_os | < 26.3 | 26.3 |
| apple | iphone_os | >= 26.0 < 26.2 | 26.2 |
| apple | macos | < 26.3 | 26.3 |
| apple | macos | >= 26.0 < 26.2 | 26.2 |
| apple | macos_tahoe | — | — |
| apple | macos_tahoe | — | — |
| apple | safari | < 26.2 | 26.2 |
| apple | safari | — | — |
| apple | tvos | < 26.2 | 26.2 |
| apple | tvos | < 26.3 | 26.3 |
| apple | tvos | — | — |
| apple | tvos | — | — |
| apple | visionos | < 26.2 | 26.2 |
| apple | visionos | < 26.3 | 26.3 |
| apple | visionos | — | — |
| apple | visionos | — | — |
| apple | watchos | < 26.2 | 26.2 |
| apple | watchos | < 26.3 | 26.3 |
Detection & IOCsextracted from sources · hover to see the quote
- →CVE-2025-43529 is a WebKit use-after-free vulnerability triggered by processing maliciously crafted web content, enabling arbitrary code execution; detection should focus on WebKit/Safari process crashes or unexpected code execution originating from web content rendering on Apple platforms (iOS before iOS 26, macOS, tvOS, watchOS, visionOS, Safari). ↗
- →CVE-2025-43529 was exploited in conjunction with CVE-2025-14174 (ANGLE/WebGL memory corruption in Chrome/WebKit) as part of the same sophisticated targeted attack chain; detections should consider chained exploitation of both CVEs delivered via malicious web content. ↗
- ·Apple provided no technical details on the exploitation method or threat actor; the attack is described only as 'extremely sophisticated' and 'targeted,' limiting the ability to build precise behavioral detections without further threat intelligence. ↗
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv8.8HIGH
vulncheck8.8HIGH
cisa8.8HIGH
vendor_debian8.8HIGH
vendor_redhat8.8HIGH
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2025-43529: tvOS 26.3
vendor_apple·2026-02-11·CVSS 8.8
CVE-2025-43529 [HIGH] CVE-2025-43529: tvOS 26.3
Apple Security Update: About the security content of tvOS 26.3
Product: tvOS
Version: 26.3
CVE: CVE-2025-43529
Component: CoreServices
Impact: An app may be able to gain root privileges
Description: A race condition was addressed with improved state handling.
Apple
CVE-2025-43529: iOS 26.3 and iPadOS 26.3
vendor_apple·2026-02-11·CVSS 8.8
CVE-2025-43529 [HIGH] CVE-2025-43529: iOS 26.3 and iPadOS 26.3
Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3
Product: iOS 26.3 and iPadOS
Version: 26.3
CVE: CVE-2025-43529
Component: CoreServices
Impact: An app may be able to access sensitive user data
Description: An issue existed in the handling of environment variables. This issue was addressed with improved validation.
Apple
CVE-2025-43529: watchOS 26.3
vendor_apple·2026-02-11·CVSS 8.8
CVE-2025-43529 [HIGH] CVE-2025-43529: watchOS 26.3
Apple Security Update: About the security content of watchOS 26.3
Product: watchOS
Version: 26.3
CVE: CVE-2025-43529
Component: CoreServices
Impact: An app may be able to access sensitive user data
Description: An issue existed in the handling of environment variables. This issue was addressed with improved validation.
Apple
CVE-2025-43529: visionOS 26.3
vendor_apple·2026-02-11·CVSS 8.8
CVE-2025-43529 [HIGH] CVE-2025-43529: visionOS 26.3
Apple Security Update: About the security content of visionOS 26.3
Product: visionOS
Version: 26.3
CVE: CVE-2025-43529
Component: CoreServices
Impact: An app may be able to access sensitive user data
Description: An issue existed in the handling of environment variables. This issue was addressed with improved validation.
Apple
CVE-2025-43529: macOS Tahoe 26.3
vendor_apple·2026-02-11·CVSS 8.8
CVE-2025-43529 [HIGH] CVE-2025-43529: macOS Tahoe 26.3
Apple Security Update: About the security content of macOS Tahoe 26.3
Product: macOS Tahoe
Version: 26.3
CVE: CVE-2025-43529
Component: CoreServices
Impact: An app may be able to access sensitive user data
Description: An issue existed in the handling of environment variables. This issue was addressed with improved validation.
Ubuntu
WebKitGTK vulnerabilities
vendor_ubuntu·2026-01-13
CVE-2025-14174 WebKitGTK vulnerabilities
Title: WebKitGTK vulnerabilities
Summary: Several security issues were fixed in WebKitGTK.
Several security issues were discovered in the WebKitGTK Web and JavaScript
engines. If a user were tricked into viewing a malicious website, a remote
attacker could exploit a variety of issues related to web browser security,
including cross-site scripting attacks, denial of service attacks, and
arbitrary code execution.
Instructions: This update uses a new upstream release, which includes additional bug
fixes. After a standard system update you need to restart any applications
that use WebKitGTK, such as Epiphany, to make all the necessary changes.
Red Hat
webkitgtk: webkitgtk: Use-after-free due to improper memory management
vendor_redhat·2025-12-16·CVSS 8.8
CVE-2025-43529 [HIGH] CWE-825 webkitgtk: webkitgtk: Use-after-free due to improper memory management
webkitgtk: webkitgtk: Use-after-free due to improper memory management
A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, tvOS 26.2, visionOS 26.2, watchOS 26.2. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 was also issued in response to this report.
A flaw was found in webkitgtk where when processing a maliciously crafted web content a use-after-free type of weaknesses may be triggered leading to a remote code execution in the client mac
CISA
Apple Multiple Products Use-After-Free WebKit Vulnerability
cisa·2025-12-15·CVSS 8.8
CVE-2025-43529 [HIGH] CWE-416 Apple Multiple Products Use-After-Free WebKit Vulnerability
Vulnerability: Apple Multiple Products Use-After-Free WebKit Vulnerability
Affected: Apple Multiple Products
Apple iOS, iPadOS, macOS, and other Apple products contain a use-after-free vulnerability in WebKit. Processing maliciously crafted web content may lead to memory corruption. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.
Required Action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
Notes: https://support.apple.com/en-us/125884 ; https://support.apple.com/en-us/125892 ; https://support.apple.com/en-us/125885 ; https://support.apple.com/en-us
Apple
CVE-2025-43529: macOS Tahoe 26.2
vendor_apple·2025-12-12·CVSS 8.8
CVE-2025-43529 [HIGH] CVE-2025-43529: macOS Tahoe 26.2
Apple Security Update: About the security content of macOS Tahoe 26.2
Product: macOS Tahoe
Version: 26.2
CVE: CVE-2025-43529
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 was also issued in response to this report.
Description: A use-after-free issue was addressed with improved memory management.
Apple
CVE-2025-43529: watchOS 26.2
vendor_apple·2025-12-12·CVSS 8.8
CVE-2025-43529 [HIGH] CVE-2025-43529: watchOS 26.2
Apple Security Update: About the security content of watchOS 26.2
Product: watchOS
Version: 26.2
CVE: CVE-2025-43529
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 was also issued in response to this report.
Description: A use-after-free issue was addressed with improved memory management.
Apple
CVE-2025-43529: visionOS 26.2
vendor_apple·2025-12-12·CVSS 8.8
CVE-2025-43529 [HIGH] CVE-2025-43529: visionOS 26.2
Apple Security Update: About the security content of visionOS 26.2
Product: visionOS
Version: 26.2
CVE: CVE-2025-43529
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 was also issued in response to this report.
Description: A use-after-free issue was addressed with improved memory management.
Apple
CVE-2025-43529: Safari 26.2
vendor_apple·2025-12-12·CVSS 8.8
CVE-2025-43529 [HIGH] CVE-2025-43529: Safari 26.2
Apple Security Update: About the security content of Safari 26.2
Product: Safari
Version: 26.2
CVE: CVE-2025-43529
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 was also issued in response to this report.
Description: A use-after-free issue was addressed with improved memory management.
Apple
CVE-2025-43529: iOS 26.2 and iPadOS 26.2
vendor_apple·2025-12-12·CVSS 8.8
CVE-2025-43529 [HIGH] CVE-2025-43529: iOS 26.2 and iPadOS 26.2
Apple Security Update: About the security content of iOS 26.2 and iPadOS 26.2
Product: iOS 26.2 and iPadOS
Version: 26.2
CVE: CVE-2025-43529
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 was also issued in response to this report.
Description: A use-after-free issue was addressed with improved memory management.
Apple
CVE-2025-43529: iOS 18.7.3 and iPadOS 18.7.3
vendor_apple·2025-12-12·CVSS 8.8
CVE-2025-43529 [HIGH] CVE-2025-43529: iOS 18.7.3 and iPadOS 18.7.3
Apple Security Update: About the security content of iOS 18.7.3 and iPadOS 18.7.3
Product: iOS 18.7.3 and iPadOS
Version: 18.7.3
CVE: CVE-2025-43529
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 was also issued in response to this report.
Description: A use-after-free issue was addressed with improved memory management.
Apple
CVE-2025-43529: tvOS 26.2
vendor_apple·2025-12-12·CVSS 8.8
CVE-2025-43529 [HIGH] CVE-2025-43529: tvOS 26.2
Apple Security Update: About the security content of tvOS 26.2
Product: tvOS
Version: 26.2
CVE: CVE-2025-43529
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 was also issued in response to this report.
Description: A use-after-free issue was addressed with improved memory management.
Debian
CVE-2025-43529: webkit2gtk - A use-after-free issue was addressed with improved memory management. This issue...
vendor_debian·2025·CVSS 8.8
CVE-2025-43529 [HIGH] CVE-2025-43529: webkit2gtk - A use-after-free issue was addressed with improved memory management. This issue...
A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, tvOS 26.2, visionOS 26.2, watchOS 26.2. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 was also issued in response to this report.
Scope: local
bookworm: resolved (fixed in 2.50.4-1~deb12u1)
bullseye: resolved (fixed in 2.50.4-1~deb11u1)
forky: resolved (fixed in 2.50.4-1)
sid: resolved (fixed in 2.50.4-1)
trixie: resolved (fixed in 2.50.4-1~deb13u1)
GHSA
GHSA-j5x8-2r52-c3ff: A memory corruption issue was addressed with improved state management
ghsa_unreviewed·2026-02-12·CVSS 8.8
CVE-2026-20700 [HIGH] CWE-119 GHSA-j5x8-2r52-c3ff: A memory corruption issue was addressed with improved state management
A memory corruption issue was addressed with improved state management. This issue is fixed in watchOS 26.3, tvOS 26.3, macOS Tahoe 26.3, visionOS 26.3, iOS 26.3 and iPadOS 26.3. An attacker with memory write capability may be able to execute arbitrary code. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 and CVE-2025-43529 were also issued in response to this report.
GHSA
GHSA-m9mp-fmfc-g6gc: A use-after-free issue was addressed with improved memory management
ghsa_unreviewed·2025-12-17·CVSS 8.8
CVE-2025-43529 [HIGH] CWE-416 GHSA-m9mp-fmfc-g6gc: A use-after-free issue was addressed with improved memory management
A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 26.2, Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, visionOS 26.2, tvOS 26.2. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 was also issued in response to this report.
OSV
CVE-2025-43529: A use-after-free issue was addressed with improved memory management
osv·2025-12-17·CVSS 8.8
CVE-2025-43529 [HIGH] CVE-2025-43529: A use-after-free issue was addressed with improved memory management
A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 26.2, Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, visionOS 26.2, tvOS 26.2. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 was also issued in response to this report.
OSV
CVE-2025-43529: A use-after-free issue was addressed with improved memory management
osv·2025-12-17·CVSS 8.8
CVE-2025-43529 [HIGH] CVE-2025-43529: A use-after-free issue was addressed with improved memory management
A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, tvOS 26.2, visionOS 26.2, watchOS 26.2. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 was also issued in response to this report.
VulnCheck
Apple Multiple Products Use-After-Free WebKit Vulnerability
vulncheck·2025·CVSS 8.8
CVE-2025-43529 [HIGH] CWE-416 Apple Multiple Products Use-After-Free WebKit Vulnerability
Apple Multiple Products Use-After-Free WebKit Vulnerability
Apple iOS, iPadOS, macOS, and other Apple products contain a use-after-free vulnerability in WebKit. Processing maliciously crafted web content may lead to memory corruption. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.
Affected: Apple Multiple Products
Required Action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
Exploitation References: https://docs.google.com/spreadsheets/d/1lkNJ0uQwbeC1ZTRrxdtuPLCIl7mlUreoKfSIgajnSyY/edit; https://support.apple.com/en-us/125885; https://www.cisa.gov
No detection rules found.
No public exploits indexed.
Bleepingcomputer
Apple expands iOS 18 updates to more iPhones to block DarkSword attacks
blogs_bleepingcomputer·2026-04-01·CVSS 8.8
CVE-2025-31277 [HIGH] Apple expands iOS 18 updates to more iPhones to block DarkSword attacks
## Apple expands iOS 18 updates to more iPhones to block DarkSword attacks
## Lawrence Abrams
In March, researchers at Lookout, iVerify, and Google Threat Intelligence revealed a new "DarkSword" exploit kit that targeted iPhones running iOS 18.4 through 18.7.
The six vulnerabilities used by the DarkSword exploit kit are tracked as CVE-2025-31277, CVE-2025-43529, CVE-2026-20700, CVE-2025-14174, CVE-2025-43510, and CVE-2025-43520.
While iOS exploits have typically been used in highly targeted spyware campaigns, this iOS exploit kit was used much more widely, including by Turkish commercial surveillance vendor PARS Defense, a threat actor tracked as UNC6748, and a suspected Russian espionage group tracked as UNC6353.
In these attacks, GTIG observed three separate information-stealing mal
Bleepingcomputer
New DarkSword iOS exploit used in infostealer attack on iPhones
blogs_bleepingcomputer·2026-03-18·CVSS 8.8
CVE-2025-31277 [HIGH] New DarkSword iOS exploit used in infostealer attack on iPhones
## New DarkSword iOS exploit used in infostealer attack on iPhones
## Bill Toulas
iVerify's findings indicate that all flaws (sandbox escape, privilege escalation, remote code execution) exploited in this exploit chain are known or documented, and Apple has already addressed them in the latest iOS releases.
The DarkSword exploit kit uses six vulnerabilities tracked as CVE-2025-31277, CVE-2025-43529, CVE-2026-20700, CVE-2025-14174, CVE-2025-43510, and CVE-2025-43520.
## DarkSword attacks
In a report today, Google Threat Intelligence Group (GTIG) says that DarkSword has been used since at least November 2025 by several threat actors, who deployed three separate malware families:
GHOSTBLADE, a dataminer in JavaScript that steals a swath of information, including crypto wallet data, syst
Mandiant
The Proliferation of DarkSword: iOS Exploit Chain Adopted by Multiple Threat Actors
blogs_mandiant·2026-03-18
The Proliferation of DarkSword: iOS Exploit Chain Adopted by Multiple Threat Actors
## The Proliferation of DarkSword: iOS Exploit Chain Adopted by Multiple Threat Actors
## Google Threat Intelligence Group
## Google Threat Intelligence
Visibility and context on the threats that matter most.
## Introduction
Google Threat Intelligence Group (GTIG) has identified a new iOS full-chain exploit that leveraged multiple zero-day vulnerabilities to fully compromise devices. Based on toolmarks in recovered payloads, we believe the exploit chain to be called DarkSword. Since at least November 2025, GTIG has observed multiple commercial surveillance vendors and suspected state-sponsored actors utilizing DarkSword in distinct campaigns. These threat actors have deployed the exploit chain against targets in Saudi Arabia, Turkey, Malaysia, and Ukraine.
DarkSword supports iOS vers
Bleepingcomputer
Apple fixes zero-day flaw used in 'extremely sophisticated' attacks
blogs_bleepingcomputer·2026-02-11·CVSS 8.8
CVE-2025-14174 [HIGH] Apple fixes zero-day flaw used in 'extremely sophisticated' attacks
## Apple fixes zero-day flaw used in 'extremely sophisticated' attacks
## Lawrence Abrams
Apple says it is aware of reports that the flaw, along with the CVE-2025-14174 and CVE-2025-43529 flaws fixed in December , were exploited in the same incidents.
"An attacker with memory write capability may be able to execute arbitrary code," reads Apple's security bulletin .
"Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 and CVE-2025-43529 were also issued in response to this report."
Apple says Google's Threat Analysis Group discovered CVE-2026-20700. The company did not provide any further details about how the vulnerability was exploited.
Affected
Checkpoint
15th December – Threat Intelligence Report
blogs_checkpoint·2025-12-15
CVE-2025-14174 15th December – Threat Intelligence Report
Latest Publications
CPR Podcast Channel
AI Research
Web 3.0 Security
Intelligence Reports
ThreatCloud AI
Threat Intelligence & Research
Zero Day Protection
Sandblast File Analysis
About Us
SUBSCRIBE
2026
2025
2024
2023
2022
2021
2020
2019
2018
2017
2016
## 15th December – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 15th December, please download our Threat Intelligence Bulletin .
TOP ATTACKS AND BREACHES
The Indian government confirmed cyber incidents involving GPS spoofing at seven major airports, including Delhi, Mumbai, Kolkata, and Bengaluru. The attack affected aircrafts using GPS-based landing procedures. Despite signal disruption to navigation data, authorities stated no flights were cancelled or diverted, with c
Bleepingcomputer
Apple fixes two zero-day flaws exploited in 'sophisticated' attacks
blogs_bleepingcomputer·2025-12-12·CVSS 8.8
CVE-2025-43529 [HIGH] Apple fixes two zero-day flaws exploited in 'sophisticated' attacks
## Apple fixes two zero-day flaws exploited in 'sophisticated' attacks
## Lawrence Abrams
CVE-2025-43529 is a WebKit use-after-free remote code execution flaw that can be exploited by processing maliciously crafted web content. Apple says the flaw was discovered by Google’s Threat Analysis Group.
CVE-2025-14174 is a WebKit memory corruption flaw that could lead to memory corruption. Apple says the flaw was discovered by both Apple and Google’s Threat Analysis Group.
Devices impacted by both flaws include:
iPhone 11 and later
iPad Pro 12.9-inch (3rd generation and later)
iPad Pro 11-inch (1st generation and later)
iPad Air (3rd generation and later)
iPad (8th generation and later)
iPad mini (5th generation and later)
Apple has fixed the flaws in iOS 26.2 and iPadOS 26.2, iOS 18.7
Recorded Future
December 2025 CVE Landscape: 22 Critical Vulnerabilities Mark 120% Surge, React2Shell Dominates Threat Activity
blogs_recorded_future·CVSS 7.8
CVE-2025-55182 [HIGH] December 2025 CVE Landscape: 22 Critical Vulnerabilities Mark 120% Surge, React2Shell Dominates Threat Activity
# December 2025 CVE Landscape: 22 Critical Vulnerabilities Mark 120% Surge, React2Shell Dominates Threat Activity
December 2025 witnessed a dramatic 120% increase in high-impact vulnerabilities, with Recorded Future's Insikt Group® identifying 22 vulnerabilities requiring immediate remediation, up from 10 in November. The month was dominated by widespread exploitation of Meta's React Server Components flaw.
What security teams need to know:
- React2Shell pandemonium: CVE-2025-55182 triggered a global exploitation wave with multiple threat actors deploying diverse malware families
- China-nexus exploitation intensifies: Earth Lamia, Jackpot Panda, and UAT-9686 leveraged critical flaws for espionage operations
- Public exploits proliferate: Eleven of 22 vulnerabilities have proof-of-conce
Wiz
CVE-2025-43529 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 8.8
CVE-2025-43529 [HIGH] CVE-2025-43529 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-43529 :
Apple Safari vulnerability analysis and mitigation
A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, tvOS 26.2, visionOS 26.2, watchOS 26.2. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 was also issued in response to this report.
Source : NVD
## 8.8
Score
Published December 17, 2025
Severity HIGH
CNA Score 8.8
Affected Technologies
Apple Safari
Rocky Linux
Has Public Exploit Yes
Has CISA KEV Exploit Yes
Wiz
CVE-2026-20700 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 8.8
CVE-2026-20700 [HIGH] CVE-2026-20700 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-20700 :
macOS vulnerability analysis and mitigation
A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Tahoe 26.3, tvOS 26.3, visionOS 26.3, watchOS 26.3. An attacker with memory write capability may be able to execute arbitrary code. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 and CVE-2025-43529 were also issued in response to this report.
Source : NVD
## 7.8
Score
Published February 11, 2026
Severity HIGH
CNA Score 7.8
Affected Technologies
macOS
Has Public Exploit Yes
Has CISA KEV Exploit Yes
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Bugzilla
CVE-2025-43529 webkit2gtk4.0: webkitgtk: Use-after-free due to improper memory management [fedora-42]
bugzilla·2025-12-17·CVSS 8.8
CVE-2025-43529 [HIGH] CVE-2025-43529 webkit2gtk4.0: webkitgtk: Use-after-free due to improper memory management [fedora-42]
CVE-2025-43529 webkit2gtk4.0: webkitgtk: Use-after-free due to improper memory management [fedora-42]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
The following link provides references to all essential vulnerability management information. If something is wrong or missing, please contact a member of PSIRT.
https://spaces.redhat.com/display/PRODSEC/Vulnerability+Management+-+Essential+Documents+for+Engineering+Teams
Discussion:
This message is a reminder that Fedora Linux 42 is nearing its end of life.
Fedora will stop maintaining and issuing updates for Fedora Linux 42 on 2026-05-13.
It is Fedora's policy to
Bugzilla
CVE-2025-43529 obs-studio-plugin-webkitgtk: webkitgtk: Use-after-free due to improper memory management [fedora-42]
bugzilla·2025-12-17·CVSS 8.8
CVE-2025-43529 [HIGH] CVE-2025-43529 obs-studio-plugin-webkitgtk: webkitgtk: Use-after-free due to improper memory management [fedora-42]
CVE-2025-43529 obs-studio-plugin-webkitgtk: webkitgtk: Use-after-free due to improper memory management [fedora-42]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
The following link provides references to all essential vulnerability management information. If something is wrong or missing, please contact a member of PSIRT.
https://spaces.redhat.com/display/PRODSEC/Vulnerability+Management+-+Essential+Documents+for+Engineering+Teams
Discussion:
This message is a reminder that Fedora Linux 42 is nearing its end of life.
Fedora will stop maintaining and issuing updates for Fedora Linux 42 on 2026-05-13.
It is Fedor
https://support.apple.com/en-us/125884https://support.apple.com/en-us/125885https://support.apple.com/en-us/125886https://support.apple.com/en-us/125889https://support.apple.com/en-us/125890https://support.apple.com/en-us/125891https://support.apple.com/en-us/125892https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-43529
2025-12-17
Published
2025-12-15
Added to CISA KEV
Exploited in the wild