Apple Safari vulnerabilities

1,592 known vulnerabilities affecting apple/safari.

Total CVEs
1,592
CISA KEV
31
actively exploited
Public exploits
157
Exploited in wild
25
Severity breakdown
CRITICAL211HIGH603MEDIUM757LOW20UNKNOWN1

Vulnerabilities

Page 53 of 80
CVE-2014-1341MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1341 [MEDIUM] CWE-119 CVE-2014-1341: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2014-1326MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1326 [MEDIUM] CWE-119 CVE-2014-1326: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2014-1327MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1327 [MEDIUM] CWE-119 CVE-2014-1327: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2014-1331MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1331 [MEDIUM] CWE-119 CVE-2014-1331: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2014-1333MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1333 [MEDIUM] CWE-119 CVE-2014-1333: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2014-1335MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1335 [MEDIUM] CWE-119 CVE-2014-1335: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2014-1323MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1323 [MEDIUM] CWE-119 CVE-2014-1323: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2014-1342MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1342 [MEDIUM] CWE-119 CVE-2014-1342: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2014-1339MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1339 [MEDIUM] CWE-119 CVE-2014-1339: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2014-1343MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1343 [MEDIUM] CWE-119 CVE-2014-1343: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2014-1338MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1338 [MEDIUM] CWE-119 CVE-2014-1338: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2014-1344MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1344 [MEDIUM] CWE-119 CVE-2014-1344: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2014-1324MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1324 [MEDIUM] CWE-119 CVE-2014-1324: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2014-1346MEDIUMCVSS 5.0≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1346 [MEDIUM] CWE-20 CVE-2014-1346: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, does not properly interpret Unico WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, does not properly interpret Unicode encoding, which allows remote attackers to spoof a postMessage origin, and bypass intended restrictions on sending a message to a connected frame or window, via crafted characters in a URL.
nvd
CVE-2014-1337MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1337 [MEDIUM] CWE-119 CVE-2014-1337: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2014-1329MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1329 [MEDIUM] CWE-119 CVE-2014-1329: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2014-1330MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1330 [MEDIUM] CWE-119 CVE-2014-1330: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2014-1336MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1336 [MEDIUM] CWE-119 CVE-2014-1336: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2014-1334MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1334 [MEDIUM] CWE-119 CVE-2014-1334: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2014-1308MEDIUMCVSS 6.8≤ 6.1.2v6.0+10 more2014-04-02
CVE-2014-1308 [MEDIUM] CWE-119 CVE-2014-1308: WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-04-01-1.
nvd