Apple Safari vulnerabilities
1,677 known vulnerabilities affecting apple/safari.
Total CVEs
1,677
CISA KEV
31
actively exploited
Public exploits
168
Exploited in wild
52
Severity breakdown
CRITICAL211HIGH628MEDIUM815LOW22UNKNOWN1
Vulnerabilities
Page 7 of 84
CVE-2018-4197P2HIGHCVSS 8.8PoCfixed in 122019-04-03
CVE-2018-4197 [HIGH] CWE-416 CVE-2018-4197: A use after free issue was addressed with improved memory management. This issue affected versions p
A use after free issue was addressed with improved memory management. This issue affected versions prior to iOS 12, tvOS 12, Safari 12, iTunes 12.9 for Windows, iCloud for Windows 7.7.
nvdapple
CVE-2018-4317P2HIGHCVSS 8.8PoCfixed in 122019-04-03
CVE-2018-4317 [HIGH] CWE-416 CVE-2018-4317: A use after free issue was addressed with improved memory management. This issue affected versions p
A use after free issue was addressed with improved memory management. This issue affected versions prior to iOS 12, tvOS 12, Safari 12, iTunes 12.9 for Windows, iCloud for Windows 7.7.
nvdapple
CVE-2018-4318P2HIGHCVSS 8.8PoCfixed in 122019-04-03
CVE-2018-4318 [HIGH] CWE-416 CVE-2018-4318: A use after free issue was addressed with improved memory management. This issue affected versions p
A use after free issue was addressed with improved memory management. This issue affected versions prior to iOS 12, tvOS 12, Safari 12, iTunes 12.9 for Windows, iCloud for Windows 7.7.
nvdapple
CVE-2018-4306P2HIGHCVSS 8.8PoCfixed in 122019-04-03
CVE-2018-4306 [HIGH] CWE-416 CVE-2018-4306: A use after free issue was addressed with improved memory management. This issue affected versions p
A use after free issue was addressed with improved memory management. This issue affected versions prior to iOS 12, tvOS 12, Safari 12, iTunes 12.9 for Windows, iCloud for Windows 7.7.
nvdapple
CVE-2017-2457P2HIGHCVSS 8.8PoC≤ 10.0.32017-04-02
CVE-2017-2457 [HIGH] CWE-119 CVE-2017-2457: An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 i
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.
nvdapple
CVE-2017-2514P2HIGHCVSS 8.8PoC≤ 10.12017-05-22
CVE-2017-2514 [HIGH] CWE-119 CVE-2017-2514: An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. Safari before 10.1
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. Safari before 10.1.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.
nvdapple
CVE-2017-13796P2HIGHCVSS 8.8PoCfixed in 11.0.12017-11-13
CVE-2017-13796 [HIGH] CWE-119 CVE-2017-13796: An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1
An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of servi
nvdapple
CVE-2017-13783P2HIGHCVSS 8.8PoCfixed in 11.0.12017-11-13
CVE-2017-13783 [HIGH] CWE-119 CVE-2017-13783: An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1
An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of servi
nvdapple
CVE-2017-13791P2HIGHCVSS 8.8PoCfixed in 11.0.12017-11-13
CVE-2017-13791 [HIGH] CWE-119 CVE-2017-13791: An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1
An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of servi
nvdapple
CVE-2017-13795P2HIGHCVSS 8.8PoCfixed in 11.0.12017-11-13
CVE-2017-13795 [HIGH] CWE-119 CVE-2017-13795: An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1
An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of servi
nvdapple
CVE-2017-13785P2HIGHCVSS 8.8PoCfixed in 11.0.12017-11-13
CVE-2017-13785 [HIGH] CWE-119 CVE-2017-13785: An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1
An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of servi
nvdapple
CVE-2017-13792P2HIGHCVSS 8.8PoCfixed in 11.0.12017-11-13
CVE-2017-13792 [HIGH] CWE-119 CVE-2017-13792: An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1
An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of servi
nvdapple
CVE-2017-13802P2HIGHCVSS 8.8PoCfixed in 11.0.12017-11-13
CVE-2017-13802 [HIGH] CWE-119 CVE-2017-13802: An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1
An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of servi
nvdapple
CVE-2017-13784P2HIGHCVSS 8.8PoCfixed in 11.0.12017-11-13
CVE-2017-13784 [HIGH] CWE-119 CVE-2017-13784: An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1
An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of servi
nvdapple
CVE-2018-4442P2HIGHCVSS 8.8PoCfixed in 12.0.22019-04-03
CVE-2018-4442 [HIGH] CWE-119 CVE-2018-4442: A memory corruption issue was addressed with improved memory handling. This issue affected versions
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2, Safari 12.0.2, iTunes 12.9.2 for Windows, iCloud for Windows 7.9.
nvdapple
CVE-2018-4438P2HIGHCVSS 8.8PoCfixed in 12.0.22019-04-03
CVE-2018-4438 [HIGH] CWE-119 CVE-2018-4438: A logic issue existed resulting in memory corruption. This was addressed with improved state managem
A logic issue existed resulting in memory corruption. This was addressed with improved state management. This issue affected versions prior to iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2, Safari 12.0.2, iTunes 12.9.2 for Windows, iCloud for Windows 7.9.
nvdapple
CVE-2017-13797P2HIGHCVSS 8.8PoCfixed in 11.0.12017-11-13
CVE-2017-13797 [HIGH] CWE-119 CVE-2017-13797: An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1
An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of servi
nvdapple
CVE-2017-2491P2HIGHCVSS 8.8PoCv10.12017-03-27
CVE-2017-2491 [HIGH] CVE-2017-2491: Safari 10.1
Apple Security Update: About the security content of Safari 10.1
Product: Safari
Version: 10.1
CVE: CVE-2017-2491
Component: JavaScriptCore
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A use after free issue was addressed through improved memory management.
apple
CVE-2018-4382P2HIGHCVSS 8.8PoCfixed in 12.0.12019-04-03
CVE-2018-4382 [HIGH] CWE-119 CVE-2018-4382: Multiple memory corruption issues were addressed with improved memory handling. This issue affected
Multiple memory corruption issues were addressed with improved memory handling. This issue affected versions prior to iOS 12.1, tvOS 12.1, watchOS 5.1, Safari 12.0.1, iTunes 12.9.1, iCloud for Windows 7.8.
nvdapple
CVE-2011-0222P3CRITICALCVSS 9.3PoC≤ 5.0.5v1.0+54 more2011-07-21
CVE-2011-0222 [CRITICAL] CWE-119 CVE-2011-0222: WebKit, as used in Apple Safari before 5.0.6, allows remote attackers to execute arbitrary code or c
WebKit, as used in Apple Safari before 5.0.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2011-07-20-1.
nvd