PT-2026-27536 · Apple+3 · Ios+10
Publicado
2026-03-24
·
Atualizado
2026-05-19
·
CVE-2026-20665
CVSS v3.1
6.5
Média
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L |
Name of the Vulnerable Software and Affected Versions
Safari versions prior to 26.4
iOS versions prior to 18.7.7
iPadOS versions prior to 18.7.7
macOS Tahoe versions prior to 26.4
tvOS versions prior to 26.4
visionOS versions prior to 26.4
watchOS versions prior to 26.4
Description
The issue involves improper state management that could allow maliciously crafted web content to bypass Content Security Policy (CSP) enforcement.
Recommendations
Update Safari to version 26.4.
Update iOS to version 18.7.7.
Update iPadOS to version 18.7.7.
Update macOS Tahoe to version 26.4.
Update tvOS to version 26.4.
Update visionOS to version 26.4.
Update watchOS to version 26.4.
Correção
Protection Mechanism Failure
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Linuxmint
Apple Macos
Rocky Linux
Safari
Ubuntu
Ios
Ipados
Macos Tahoe
Tvos
Visionos
Watchos