cbcvebase.

Apple Safari vulnerabilities

1,654 known vulnerabilities affecting apple/safari.

Total CVEs
1,654
CISA KEV
31
actively exploited
Public exploits
168
Exploited in wild
51
Severity breakdown
CRITICAL211HIGH626MEDIUM796LOW20UNKNOWN1

Vulnerabilities

Page 59 of 83
CVE-2014-1309P4MEDIUMCVSS 6.8≤ 6.1.2v6.0+10 more2014-04-02
CVE-2014-1309 [MEDIUM] CWE-119 CVE-2014-1309: WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-04-01-1.
nvd
CVE-2014-1298P4MEDIUMCVSS 6.8≤ 6.1.2v6.0+10 more2014-04-02
CVE-2014-1298 [MEDIUM] CWE-119 CVE-2014-1298: WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-04-01-1.
nvd
CVE-2014-1299P4MEDIUMCVSS 6.8≤ 6.1.2v6.0+10 more2014-04-02
CVE-2014-1299 [MEDIUM] CWE-119 CVE-2014-1299: WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-04-01-1.
nvd
CVE-2014-1312P4MEDIUMCVSS 6.8≤ 6.1.2v6.0+10 more2014-04-02
CVE-2014-1312 [MEDIUM] CWE-119 CVE-2014-1312: WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-04-01-1.
nvd
CVE-2014-1302P4MEDIUMCVSS 6.8≤ 6.1.2v6.0+10 more2014-04-02
CVE-2014-1302 [MEDIUM] CWE-119 CVE-2014-1302: WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-04-01-1.
nvd
CVE-2013-5196P4MEDIUMCVSS 6.8≤ 6.1v6.0+6 more2013-12-18
CVE-2013-5196 [MEDIUM] CWE-119 CVE-2013-5196: WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-12-16-1.
nvd
CVE-2013-5197P4MEDIUMCVSS 6.8≤ 6.1v6.0+6 more2013-12-18
CVE-2013-5197 [MEDIUM] CWE-119 CVE-2013-5197: WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-12-16-1.
nvd
CVE-2013-5225P4MEDIUMCVSS 6.8≤ 6.1v6.0+6 more2013-12-18
CVE-2013-5225 [MEDIUM] CWE-119 CVE-2013-5225: WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-12-16-1.
nvd
CVE-2014-1344P4MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1344 [MEDIUM] CWE-119 CVE-2014-1344: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2013-5195P4MEDIUMCVSS 6.8≤ 6.1v6.0+6 more2013-12-18
CVE-2013-5195 [MEDIUM] CWE-119 CVE-2013-5195: WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-12-16-1.
nvd
CVE-2014-1304P4MEDIUMCVSS 6.8≤ 6.1.2v6.0+10 more2014-04-02
CVE-2014-1304 [MEDIUM] CWE-119 CVE-2014-1304: WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-04-01-1.
nvd
CVE-2014-1305P4MEDIUMCVSS 6.8≤ 6.1.2v6.0+10 more2014-04-02
CVE-2014-1305 [MEDIUM] CWE-119 CVE-2014-1305: WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-04-01-1.
nvd
CVE-2013-1009P4MEDIUMCVSS 6.8≤ 6.0.4v6.0+3 more2013-06-05
CVE-2013-1009 [MEDIUM] CWE-119 CVE-2013-1009: WebKit, as used in Apple Safari before 6.0.5, allows remote attackers to execute arbitrary code or c WebKit, as used in Apple Safari before 6.0.5, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2013-1023.
nvd
CVE-2013-1023P4MEDIUMCVSS 6.8≤ 6.0.4v6.0+3 more2013-06-05
CVE-2013-1023 [MEDIUM] CVE-2013-1023: WebKit, as used in Apple Safari before 6.0.5, allows remote attackers to execute arbitrary code or c WebKit, as used in Apple Safari before 6.0.5, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2013-1009.
nvd
CVE-2014-1301P4MEDIUMCVSS 6.8≤ 6.1.2v6.0+10 more2014-04-02
CVE-2014-1301 [MEDIUM] CWE-119 CVE-2014-1301: WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-04-01-1.
nvd
CVE-2014-1340P4MEDIUMCVSS 6.8v7.0v7.0.1+14 more2014-07-01
CVE-2014-1340 [MEDIUM] CWE-119 CVE-2014-1340: WebKit, as used in Apple Safari before 6.1.5 and 7.x before 7.0.5, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.5 and 7.x before 7.0.5, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-06-30-1.
nvd
CVE-2017-7830P4MEDIUMCVSS 6.5v11.0.32018-01-23
CVE-2017-7830 [MEDIUM] CVE-2017-7830: Safari 11.0.3 Apple Security Update: About the security content of Safari 11.0.3 Product: Safari Version: 11.0.3 CVE: CVE-2017-7830 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2014-1324P4MEDIUMCVSS 6.8≤ 6.1.3v6.0+12 more2014-05-22
CVE-2014-1324 [MEDIUM] CWE-119 CVE-2014-1324: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execut WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
nvd
CVE-2016-1858P4MEDIUMCVSS 6.5fixed in 9.1.12016-05-20
CVE-2016-1858 [MEDIUM] CWE-200 CVE-2016-1858: WebKit, as used in Apple iOS before 9.3.2, Safari before 9.1.1, and tvOS before 9.2.1, improperly tr WebKit, as used in Apple iOS before 9.3.2, Safari before 9.1.1, and tvOS before 9.2.1, improperly tracks taint attributes, which allows remote attackers to obtain sensitive information via a crafted web site.
nvdapple
CVE-2011-2805P4MEDIUMCVSS 6.8fixed in 5.1.12011-08-03
CVE-2011-2805 [MEDIUM] CWE-74 CVE-2011-2805: Google Chrome before 13.0.782.107 allows remote attackers to bypass the Same Origin Policy and condu Google Chrome before 13.0.782.107 allows remote attackers to bypass the Same Origin Policy and conduct script injection attacks via unspecified vectors.
nvd
Apple Safari vulnerabilities | cvebase