CVE-2026-43660
high
CVSS v3
7.5
CVSS v4 NEW
โ
VIR risk
7.5
Description
visionOS 26.5
Predictions
Exploit likelihood
83%
Patch ETA
โ
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Mitigation details
Source: Apple Security HT ยท View original โ ยท proprietary-no-redistribution
Full prose not cached โ VIR stores only structured fields (affected/fixed versions, references) for this source. Click "View original" above for the vendor's full advisory.
Affected
| Vendor | Product | Version |
|---|---|---|
| apple | WebKit | macOS Sonoma and macOS Sequoia |
| apple | WebKit | macOS Sonoma and macOS Sequoia |
| apple | WebKit | macOS Sonoma and macOS Sequoia |
| apple | WebKit | macOS Sonoma and macOS Sequoia |
| apple | WebKit | macOS Sonoma and macOS Sequoia |
| apple | WebKit | macOS Sonoma and macOS Sequoia |
| apple | WebKit | macOS Sonoma and macOS Sequoia |
| apple | WebKit | macOS Sonoma and macOS Sequoia |
OS impact
SUSE Affected 1 release
| Version | Status | Fixed in |
|---|---|---|
| โ | Affected | โ |
macOS Mixed 2 releases
| Version | Status | Fixed in |
|---|---|---|
| 26.5 | Fixed | โ |
| โ | Affected | 18.7.9 |
apple Fixed 1 release
| Version | Status | Fixed in |
|---|---|---|
| 26.5 | Fixed | โ |
ios Fixed 2 releases
| Version | Status | Fixed in |
|---|---|---|
| 26.5 | Fixed | โ |
| 18.7.9 | Fixed | โ |
safari Fixed 1 release
| Version | Status | Fixed in |
|---|---|---|
| 26.5 | Fixed | โ |
tvos Fixed 1 release
| Version | Status | Fixed in |
|---|---|---|
| 26.5 | Fixed | โ |
watchos Fixed 1 release
| Version | Status | Fixed in |
|---|---|---|
| 26.5 | Fixed | โ |
References
- https://support.apple.com/en-us/127121
- https://support.apple.com/en-us/127110
- https://support.apple.com/en-us/127111
- https://support.apple.com/en-us/127115
- https://support.apple.com/en-us/127118
- https://support.apple.com/en-us/127119
- https://support.apple.com/en-us/127120
- https://www.suse.com/security/cve/CVE-2026-43660.html
CWEs
CWE-693
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.