Search CVE reports


Toggle filters

1 – 10 of 691 results


CVE-2025-30427

Medium priority
Vulnerable

A use-after-free issue was addressed with improved memory management. This issue is fixed in visionOS 2.4, tvOS 18.4, iPadOS 17.7.6, iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, Safari 18.4. Processing maliciously crafted web...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored Ignored
webkit2gtk Vulnerable Vulnerable Ignored Ignored Ignored
webkitgtk Not in release Not in release Not in release Ignored Ignored
wpewebkit Not in release Ignored Ignored
Show less packages

CVE-2025-24264

Medium priority
Vulnerable

The issue was addressed with improved memory handling. This issue is fixed in visionOS 2.4, tvOS 18.4, iPadOS 17.7.6, iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, Safari 18.4. Processing maliciously crafted web content may lead...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored Ignored
webkit2gtk Vulnerable Vulnerable Ignored Ignored Ignored
webkitgtk Not in release Not in release Not in release Ignored Ignored
wpewebkit Not in release Ignored Ignored
Show less packages

CVE-2025-24216

Medium priority
Vulnerable

The issue was addressed with improved memory handling. This issue is fixed in visionOS 2.4, tvOS 18.4, iPadOS 17.7.6, iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, Safari 18.4. Processing maliciously crafted web content may lead...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored Ignored
webkit2gtk Vulnerable Vulnerable Ignored Ignored Ignored
webkitgtk Not in release Not in release Not in release Ignored Ignored
wpewebkit Not in release Ignored Ignored
Show less packages

CVE-2025-24213

Medium priority
Vulnerable

This issue was addressed with improved handling of floats. This issue is fixed in tvOS 18.4, Safari 18.4, iPadOS 17.7.6, iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4. A type confusion issue could lead to memory corruption.

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored Ignored
webkit2gtk Vulnerable Vulnerable Ignored Ignored Ignored
webkitgtk Not in release Not in release Not in release Ignored Ignored
wpewebkit Not in release Ignored Ignored
Show less packages

CVE-2025-24209

Medium priority
Vulnerable

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in tvOS 18.4, Safari 18.4, iPadOS 17.7.6, iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4. Processing maliciously crafted web content may lead...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored Ignored
webkit2gtk Vulnerable Vulnerable Ignored Ignored Ignored
webkitgtk Not in release Not in release Not in release Ignored Ignored
wpewebkit Not in release Ignored Ignored
Show less packages

CVE-2025-24208

Medium priority
Vulnerable

A permissions issue was addressed with additional restrictions. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4. Loading a malicious iframe may lead to a cross-site scripting attack.

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored Ignored
webkit2gtk Vulnerable Vulnerable Ignored Ignored Ignored
webkitgtk Not in release Not in release Not in release Ignored Ignored
wpewebkit Not in release Ignored Ignored
Show less packages

CVE-2024-54551

Medium priority
Vulnerable

The issue was addressed with improved memory handling. This issue is fixed in watchOS 10.6, tvOS 17.6, Safari 17.6, macOS Sonoma 14.6, visionOS 1.3, iOS 17.6 and iPadOS 17.6. Processing web content may lead to a denial-of-service.

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored Ignored
webkit2gtk Vulnerable Vulnerable Ignored Ignored Ignored
webkitgtk Not in release Not in release Not in release Ignored Ignored
wpewebkit Not in release Ignored Ignored
Show less packages

CVE-2025-24201

High priority

Some fixes available 3 of 18

An out-of-bounds write issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in visionOS 2.3.2, iOS 18.3.2 and iPadOS 18.3.2, macOS Sequoia 15.3.2, Safari 18.3.1. Maliciously crafted...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored Ignored
webkit2gtk Fixed Fixed Ignored Ignored Ignored
webkitgtk Not in release Not in release Not in release Ignored Ignored
wpewebkit Not in release Ignored Ignored
Show less packages

CVE-2024-54467

Medium priority

Some fixes available 3 of 18

A cookie management issue was addressed with improved state management. This issue is fixed in watchOS 11, macOS Sequoia 15, Safari 18, visionOS 2, iOS 18 and iPadOS 18, tvOS 18. A malicious website may exfiltrate data cross-origin.

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored Ignored
webkit2gtk Fixed Fixed Ignored Ignored Ignored
webkitgtk Not in release Not in release Not in release Ignored Ignored
wpewebkit Not in release Ignored Ignored
Show less packages

CVE-2024-44192

Medium priority

Some fixes available 3 of 18

The issue was addressed with improved checks. This issue is fixed in watchOS 11, macOS Sequoia 15, Safari 18, visionOS 2, iOS 18 and iPadOS 18, tvOS 18. Processing maliciously crafted web content may lead to an unexpected process crash.

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
qtwebkit-opensource-src Ignored Ignored Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release Ignored Ignored
webkit2gtk Fixed Fixed Ignored Ignored Ignored
webkitgtk Not in release Not in release Not in release Ignored Ignored
wpewebkit Not in release Ignored Ignored
Show less packages