Vulnerabilità ed exploit · Attacco ad app web

Apple rilascia Background Security Improvement per bypass WebKit

Apple ha corretto una falla di WebKit (CVE‑2026‑20643) che poteva bypassare la same-origin policy su iOS, iPadOS e macOS.

5 fonti · 18 mar

CVE-2026-20643

NVD KEV

CVSS 5.4 MEDIUM: a cross-origin issue in the Navigation API was addressed with improved input validation. EPSS 0.4% (27º percentile).

Cronologia

Fonti

Part of the PlainSec briefing for 2026-03-23

Every edition of this story: Apple rilascia Background Security Improvement per bypass WebKit

Altro da oggi