CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-28847

highcovered by 4 sourcesfirst seen 2026-07-23
Ein Angreifer kann mehrere Schwachstellen in Apple iOS und Apple iPadOS ausnutzen, um seine Privilegien zu erhöhen, um einen Denial of Service Angriff durchzuführen, um Informationen offenzulegen, um beliebigen Programmcode auszuführen, und um Sicherheitsvorkehrungen zu umgehen.

CSIRTS triage

What
Multiple vulnerabilities in WebKitGTK can be exploited to conduct denial of service attacks, disclose information, and bypass security precautions.
Who is affected
Remote attackers can exploit these vulnerabilities in WebKitGTK deployments.
Urgency
Remediation is urgent due to the high severity and potential for exploitation.
Action
Update to the latest version of WebKitGTK to mitigate these vulnerabilities.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2026-28847

Get an email if CVE-2026-28847 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (4)

External references

NVD record for CVE-2026-28847

CVE.org record

Embed the live status

CVE-2026-28847 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-28847 status](https://www.csirts.com/badge/CVE-2026-28847)](https://www.csirts.com/cve/CVE-2026-28847)