Search CVE reports


Toggle filters

1 – 10 of 816 results


CVE-2026-78376

Medium priority
Vulnerable

A flaw was found in WebKitGTK. Processing malicious web content can cause a use-after-free issue due to improper memory handling and result in memory corruption.

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Vulnerable Vulnerable Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Ignored Ignored
Show less packages

CVE-2026-64787

Medium priority

Some fixes available 2 of 17

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.6.1, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to an unexpected...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Ignored Ignored
Show less packages

CVE-2026-64783

Medium priority

Some fixes available 2 of 17

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content may lead...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Ignored Ignored
Show less packages

CVE-2026-64757

Medium priority

Some fixes available 2 of 17

A memory corruption issue was addressed with improved state management. This issue is fixed in Safari 26.6, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, visionOS 26.6, watchOS 26.6. Processing...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Ignored Ignored
Show less packages

CVE-2026-64730

Medium priority

Some fixes available 2 of 17

The issue was addressed with improved UI. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Visiting a website that frames malicious content may lead to UI spoofing.

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Ignored Ignored
Show less packages

CVE-2026-64728

Medium priority

Some fixes available 2 of 17

A permissions issue was addressed with improved validation. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Maliciously crafted web content may violate iframe...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Ignored Ignored
Show less packages

CVE-2026-64719

Medium priority

Some fixes available 2 of 17

An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Safari 26.6, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6....

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Ignored Ignored
Show less packages

CVE-2026-64713

Medium priority

Some fixes available 2 of 17

This issue was addressed with improved checks. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Websites may know if the user has visited a given link.

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Ignored Ignored
Show less packages

CVE-2026-43804

Medium priority

Some fixes available 2 of 17

This issue was addressed through improved state management. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, visionOS 26.6. Visiting a website may lead to an app denial-of-service.

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Ignored Ignored
Show less packages

CVE-2026-43745

Medium priority

Some fixes available 2 of 17

An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in Safari 26.5.2, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkitgtk Not in release Not in release Not in release Ignored
webkit2gtk Fixed Fixed Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Ignored Ignored
Show less packages