CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-20608

highcovered by 2 sourcesfirst seen 2026-09-04
Ein Angreifer kann mehrere Schwachstellen in Apple macOS ausnutzen, um Administratorrechte zu erlangen, beliebigen Code auszuführen, einen Denial-of-Service-Zustand herbeizuführen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren, vertrauliche Informationen offenzulegen oder andere nicht näher spezifizierte Angriffe durchzuführen.

CSIRTS triage

What
Multiple vulnerabilities in WebKitGTK allow remote code execution, denial of service, and information disclosure attacks.
Who is affected
Systems running WebKitGTK across multiple versions accessible to remote anonymous attackers.
Urgency
Immediate remediation required; vulnerabilities are actively exploited and permit remote code execution.
Action
Update WebKitGTK to the latest patched version immediately.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2026-20608

Get an email if CVE-2026-20608 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (2)

External references

NVD record for CVE-2026-20608

CVE.org record

Embed the live status

CVE-2026-20608 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-20608 status](https://www.csirts.com/badge/CVE-2026-20608)](https://www.csirts.com/cve/CVE-2026-20608)