A cross-origin issue was addressed with improved tracking of security origins. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. Processing maliciously crafted web content may disclose sensitive user information.
Metrics
Affected Vendors & Products
References
History
Mon, 29 Jun 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Cross‑Origin Information Disclosure in Apple Browsers and Operating Systems | |
| Weaknesses | CWE-200 |
Mon, 29 Jun 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A cross-origin issue was addressed with improved tracking of security origins. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. Processing maliciously crafted web content may disclose sensitive user information. | |
| References |
|
Status: PUBLISHED
Assigner: apple
Published:
Updated: 2026-06-29T21:36:30.506Z
Reserved: 2026-05-01T22:46:21.643Z
Link: CVE-2026-43700
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-29T21:30:03Z