CVE-2026-43770
published 2026-07-27CVE-2026-43770: A race condition was addressed with additional validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6. An…
PriorityP422medium6.1
A race condition was addressed with additional validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6. An app may be able to access sensitive user data.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | macos | < 14.8.8 | 14.8.8 |
| apple | macos | < 15.7.8 | 15.7.8 |
| apple | macos | < 26.6 | 26.6 |
| apple | tvos | < 26.6 | 26.6 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No advisories linked to this vulnerability.
Suricata
ET EXPLOIT RoundCube Webmail Persistent XSS Attempt (CVE-2023-43770)
suricata·2024-03-28·CVSS 6.1
CVE-2023-43770 [MEDIUM] ET EXPLOIT RoundCube Webmail Persistent XSS Attempt (CVE-2023-43770)
ET EXPLOIT RoundCube Webmail Persistent XSS Attempt (CVE-2023-43770)
Rule: alert smtp any any -> [$SMTP_SERVERS,$HOME_NET] any (msg:"ET EXPLOIT RoundCube Webmail Persistent XSS Attempt (CVE-2023-43770)"; flow:established,to_server; content:"Content-Type: text/plain|3b|"; content:"|0a 0a 5b 3c|"; fast_pattern; pcre:"/^[^\x3e\x0d\x0a]*?(?:[\x20\x27\x22\x2f]on[a-z]+\x3d|(?:\x3cs(?:cript[\x3a\x3e\x20\x2b\x2f]|tyle\x3d)|\x3ciframe[\x20\x2f]))/R"; reference:cve,2023-43770; classtype:attempted-user; sid:2051827; rev:2; metadata:attack_target Networking_Equipment, created_at 2024_03_28, cve CVE_2023_43770, deployment Perimeter, deployment Internal, confidence Medium, signature_severity Major, tag CISA_KEV, updated_at 2026_01_14;)
No public exploits indexed.
No writeups or analysis indexed.
2026-07-27
Published