Skip to content
AppleCVE-2026-64718

Apple Safari: use after free

Medium5.5CVE-2026-64718 · Published Jul 27, 2026 · updated Sep 14, 2026

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.6, Safari 27, iOS 26.6 and iPadOS 26.6, iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, visionOS 27, watchOS 26.6. Processing maliciously crafted web content may lead to an unexpected Safari crash.

Apple advisory

Affected versions

PackageAffectedFixed in
Safari
Product
< 26.626.6
< 2727
iOS and iPadOS
Product
< 26.626.6
< 26.726.7
< 2727
macOS
Product
< 26.626.6
< 2727
tvOS
Product
< 26.626.6
visionOS
Product
< 26.626.6
< 2727
watchOS
Product
< 26.626.6
Details and references

More Apple advisories

All Apple
Advisory
Apple iOS and iPadOS: out-of-bounds write
Critical9.8Jul 27
Apple iOS and iPadOS: out-of-bounds write
Critical9.8Jul 27
Apple iOS and iPadOS: buffer overflow
Critical9.8Jul 27
Apple iOS and iPadOS: out-of-bounds write
Critical9.8Jul 27
Apple iOS and iPadOS: integer overflow
Critical9.8Jul 27
A memory initialization issue was addressed with improved memory handling
Critical9.8Jul 27

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.