CVE-2025-31277: listed in the CISA KEV catalog

CVE-2025-31277 · CVSS 8.8 HIGH · EPSS 1% · KEV 2026-03-20

The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing maliciously crafted web content may lead to memory corruption.

Is CVE-2025-31277 exploited?

Which products and versions are affected?

Is there a patch?

No patch identifier recorded here yet.

What PlainSec published about CVE-2025-31277

Primary sources

What this record does not say

KEV and EPSS are re-checked daily. Record last updated 2026-08-31.