CVE-2026-43670
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
A Content Security Policy bypass was addressed with improved enforcement in AudioWorklet contexts. This issue is fixed in Safari 26.5, iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5. Processing maliciously crafted web content may bypass Content Security Policy.
| Vendor | apple |
| Product | safari |
| Ecosystems | |
| Industries | Technology |
| Published | Aug 25, 2026 |
Stay Ahead of the Next One
Get instant alerts for apple safari
Be the first to know when new unknown vulnerabilities affecting apple safari are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Apple / Safari
0 < 26.5
Apple / iOS and iPadOS
0 < 18.7.9 0 < 26.5
Apple / macOS
0 < 26.5