CVE-2026-43721
This issue was addressed through improved state management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe
CVSS
6.5
Medio
EPSS
0.2%
p16
KEV
—
Exploit Today
5
0-100
Publicado: 29 jun 2026 · Última mod.: 30 jun 2026 · CWE-732
0.2%EPSS · 30 días0.2%
2026-06-302026-07-19
This issue was addressed through improved state management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. A malicious website may be able to silently hijack clipboard data.
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2021-341107.8 ALT63.4%
——19WinWaste.NET version 1.0.6183.16475 has incorrect permissions, allowing a local unprivileged user to replace the executable with a malicious file that will be executed with "LocalSystem" privileges.11dCVE-2017-176778.8 ALT60.5%
——18BMC Remedy 9.1SP3 is affected by authenticated code execution. Authenticated users that have the right to create reports can use BIRT templates to run code.11dCVE-2022-262817.5 ALT56.5%
——17BigAnt Server v5.6.06 was discovered to contain an incorrect access control issue.11dCVE-2023-317487.8 ALT53.4%
——16Insecure permissions in MobileTrans v4.0.11 allows attackers to escalate privileges to local admin via replacing the executable file.11dCVE-2023-390049.8 CRÍ52.0%
——16Insecure permissions in the configuration directory (/conf/) of OPNsense Community Edition before 23.7 and Business Edition before 23.4.2 allow attackers to access sensitive information (e.g., hashed root password) which could lead to privilege escalation.11dCVE-2021-406496.5 MED51.6%
——15In Connx Version 6.2.0.1269 (20210623), a cookie can be issued by the application and not have the HttpOnly flag set.11d