cbcvebase.

Apple Safari vulnerabilities

1,613 known vulnerabilities affecting apple/safari.

Total CVEs
1,613
CISA KEV
31
actively exploited
Public exploits
157
Exploited in wild
25
Severity breakdown
CRITICAL211HIGH615MEDIUM766LOW20UNKNOWN1

Vulnerabilities

Page 24 of 81
CVE-2019-8677HIGHCVSS 8.8fixed in 12.1.2≥ unspecified, < Safari 12.1.22019-12-18
CVE-2019-8677 [HIGH] CWE-787 CVE-2019-8677: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8558HIGHCVSS 8.8PoCfixed in 12.1≥ unspecified, < Safari 12.12019-12-18
CVE-2019-8558 [HIGH] CWE-787 CVE-2019-8558: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.2, tvOS 12.2, watchOS 5.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8819HIGHCVSS 8.8fixed in 13.0.3≥ unspecified, < Safari 13.0.32019-12-18
CVE-2019-8819 [HIGH] CWE-787 CVE-2019-8819: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2, tvOS 13.2, Safari 13.0.3, iTunes for Windows 12.10.2, iCloud for Windows 11.0, iCloud for Windows 7.15. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8610HIGHCVSS 8.8fixed in 12.1.1≥ unspecified, < Safari 12.1.12019-12-18
CVE-2019-8610 [HIGH] CWE-416 CVE-2019-8610: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, Safari 12.1.1, iTunes for Windows 12.9.5, iCloud for Windows 7.12. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8679HIGHCVSS 8.8fixed in 12.1.2≥ unspecified, < Safari 12.1.22019-12-18
CVE-2019-8679 [HIGH] CWE-787 CVE-2019-8679: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-6237HIGHCVSS 8.8fixed in 12.1.1≥ unspecified, < Safari 12.1.12019-12-18
CVE-2019-6237 [HIGH] CWE-787 CVE-2019-6237: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, Safari 12.1.1, iTunes for Windows 12.9.5, iCloud for Windows 7.12. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8577HIGHCVSS 7.8fixed in 12.1.12019-12-18
CVE-2019-8577 [HIGH] CWE-119 CVE-2019-8577: An input validation issue was addressed with improved memory handling. This issue is fixed in iOS 12 An input validation issue was addressed with improved memory handling. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, watchOS 5.2.1, iTunes for Windows 12.9.5, iCloud for Windows 7.12. An application may be able to gain elevated privileges.
nvd
CVE-2019-8815HIGHCVSS 8.8fixed in 13.0.3≥ unspecified, < Safari 13.0.32019-12-18
CVE-2019-8815 [HIGH] CWE-787 CVE-2019-8815: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2, tvOS 13.2, Safari 13.0.3, iTunes for Windows 12.10.2, iCloud for Windows 11.0, iCloud for Windows 7.15. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8821HIGHCVSS 8.8fixed in 13.0.3≥ unspecified, < Safari 13.0.32019-12-18
CVE-2019-8821 [HIGH] CWE-787 CVE-2019-8821: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2, tvOS 13.2, Safari 13.0.3, iTunes for Windows 12.10.2, iCloud for Windows 11.0, iCloud for Windows 7.15. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8782HIGHCVSS 8.8fixed in 13.0.3≥ unspecified, < Safari 13.0.32019-12-18
CVE-2019-8782 [HIGH] CWE-787 CVE-2019-8782: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2, tvOS 13.2, Safari 13.0.3, iTunes for Windows 12.10.2, iCloud for Windows 11.0. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8601HIGHCVSS 8.8fixed in 12.1.1≥ unspecified, < Safari 12.1.12019-12-18
CVE-2019-8601 [HIGH] CWE-190 CVE-2019-8601: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, watchOS 5.2.1, Safari 12.1.1, iTunes for Windows 12.9.5, iCloud for Windows 7.12. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8669HIGHCVSS 8.8fixed in 12.1.2≥ unspecified, < Safari 12.1.22019-12-18
CVE-2019-8669 [HIGH] CWE-787 CVE-2019-8669: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8644HIGHCVSS 8.8fixed in 12.1.2≥ unspecified, < Safari 12.1.22019-12-18
CVE-2019-8644 [HIGH] CWE-416 CVE-2019-8644: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-6201HIGHCVSS 8.8fixed in 12.1≥ unspecified, < Safari 12.12019-12-18
CVE-2019-6201 [HIGH] CWE-787 CVE-2019-6201: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.2, tvOS 12.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8619HIGHCVSS 8.8fixed in 12.1.1≥ unspecified, < Safari 12.1.12019-12-18
CVE-2019-8619 [HIGH] CWE-787 CVE-2019-8619: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, Safari 12.1.1, iTunes for Windows 12.9.5, iCloud for Windows 7.12. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8523HIGHCVSS 8.8fixed in 12.1≥ unspecified, < Safari 12.12019-12-18
CVE-2019-8523 [HIGH] CWE-787 CVE-2019-8523: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.2, tvOS 12.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8503HIGHCVSS 8.8fixed in 12.1≥ unspecified, < Safari 12.12019-12-18
CVE-2019-8503 [HIGH] CWE-20 CVE-2019-8503: A logic issue was addressed with improved validation. This issue is fixed in iOS 12.2, tvOS 12.2, Sa A logic issue was addressed with improved validation. This issue is fixed in iOS 12.2, tvOS 12.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. A malicious website may be able to execute scripts in the context of another website.
nvdapple
CVE-2019-8615MEDIUMCVSS 6.5fixed in 12.1.1≥ unspecified, < Safari 12.1.12019-12-18
CVE-2019-8615 [MEDIUM] CWE-125 CVE-2019-8615: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, Safari 12.1.1, iTunes for Windows 12.9.5, iCloud for Windows 7.12. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8670MEDIUMCVSS 4.3fixed in 12.1.2≥ unspecified, < Safari 12.1.22019-12-18
CVE-2019-8670 [MEDIUM] CWE-20 CVE-2019-8670: An inconsistent user interface issue was addressed with improved state management. This issue is fix An inconsistent user interface issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.6, Safari 12.1.2. Visiting a malicious website may lead to address bar spoofing.
nvdapple
CVE-2019-8654MEDIUMCVSS 6.5fixed in 13.0.1≥ unspecified, < Safari 13.0.12019-12-18
CVE-2019-8654 [MEDIUM] CWE-20 CVE-2019-8654: An inconsistent user interface issue was addressed with improved state management. This issue is fix An inconsistent user interface issue was addressed with improved state management. This issue is fixed in Safari 13.0.1. Visiting a malicious website may lead to user interface spoofing.
nvdapple