CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2025-43228

highcovered by 1 sourcefirst seen 2026-09-04
Ein Angreifer kann mehrere Schwachstellen in WebKitGTK ausnutzen, um Informationen offenzulegen, um einen Denial of Service Angriff durchzuführen, um einen Cross-Site Scripting Angriff durchzuführen, und um Sicherheitsvorkehrungen zu umgehen oder andere nicht spezifizierte Angriffe durchzuführen.

CSIRTS triage

What
Multiple vulnerabilities in WebKitGTK allow attackers to disclose information, cause denial of service, perform cross-site scripting, bypass security measures, or conduct unspecified attacks.
Who is affected
Systems running WebKitGTK across multiple versions.
Urgency
Immediate remediation required; vulnerabilities are actively exploited in the wild.
Action
Update WebKitGTK to the latest patched version as soon as possible.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2025-43228

Get an email if CVE-2025-43228 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (1)

External references

NVD record for CVE-2025-43228

CVE.org record

Embed the live status

CVE-2025-43228 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2025-43228 status](https://www.csirts.com/badge/CVE-2025-43228)](https://www.csirts.com/cve/CVE-2025-43228)