185 exploited vulnerabilities in Webkit
- Vendors
- Astra Linux, Centos, Debian, Linux Mint, Apple, Red Hat
- With known exploits
- 185
- Affected Apple Safari versions
- < 17.3, 17.2, 17.0, 16.4, 16.5.2, 16.4.1, 15.5, 15.3, 14.0.3, 13.1.1, 14.0, 13.1, 13.1.2, 10.0, 15.0, 12.1.2, 12.1
- Affected Apple Ipados versions
- < 15.8.7, 16.7.5, 17.3, 17.2, 17.0, 17.0.1, 15.7.7, 16.4, 16.6, 15.7.5, 16.4.1, 15.5, 15.3.1, 14.4.1, 14.4, 13.5, 13.6, 15.0, 14.8, 14.0
- Affected Apple Iphone Os versions
- < 15.8.7, 16.7.5, 17.3, 17.2, 17.0, 17.0.1, 15.7.7, 16.4, 16.6, 15.7.5, 16.4.1, 15.5, 15.3.1, 14.4.1, 14.4, 13.5, 13.4, 13.6, 10.0, 15.0, 12.5.4, 14.8, 14.0, 12.4, 12.2
- Affected Apple Macos versions
- < 12.7.3, 13.6.4, 14.3, 14.2, 14.0, 13.3, 13.5, 13.3.1, 12.4, 12.2.1, 11.2.3, 11.2, 12.0.1
- Affected Apple Tvos versions
- < 17.3, 17.2, 17.0, 16.6, 15.5, 14.5, 13.4.5, 13.4, 13.4.8, 10.0, 15.0, 14.0, 12.4, 12.2
- Affected Apple Visionos versions
- < 1.0.2
- Affected Apple Watchos versions
- < 10.2, 10.0, 9.6, 8.6, 7.3.2, 6.2.5, 6.2, 6.2.8, 8.0, 7.0, 5.2, 5.3
- Affected Apple Itunes versions
- < 12.12.4, 12.10.7, 12.10.5, 12.10.8, 12.10.9, 12.9.6, 12.9.4
Vulnerabilities with exploits
Highest CVSS first — 17 of these already have exploit code on Sploitus
CVE-2024-23222 6 exploits
CVE-2023-42890
CVE-2023-40414
CVE-2023-41993 3 exploits
Exploit for Improper Check for Unusual or Exceptional Conditions in Apple IpadosExploit for Improper Check for Unusual or Exceptional Conditions in Apple Ipados
CVE-2023-32435 1 exploit
CVE-2023-37450
CVE-2023-28205
CVE-2022-26717
CVE-2022-22620
CVE-2021-1844
CVE-2021-1871
CVE-2020-9850 3 exploits
CVE-2020-9948
CVE-2020-3901 1 exploit
CVE-2020-3897
CVE-2020-3895
CVE-2020-3900
CVE-2020-3899
CVE-2010-2300 1 exploit
CVE-2020-9915
CVE-2016-4734
CVE-2021-30851
CVE-2021-30761
CVE-2021-30818
CVE-2020-9803
CVE-2020-9947
CVE-2019-8679
CVE-2019-8535
CVE-2019-8523
CVE-2019-8518 3 exploits
Fuzzilli - A JavaScript Engine FuzzerWebKit JavaScriptCore - Out-Of-Bounds Access in FTL JIT due to LICM Moving Array Access Exploit
CVE-2019-8506 2 exploits
WebKit JavaScriptCore - createRegExpMatchesArray Type Confusion ExploitWebKit JavaScriptCore - 'createRegExpMatchesArray' Type Confusion
CVE-2019-8672 3 exploits
Fuzzilli - A JavaScript Engine FuzzermacOS / iOS JavaScriptCore - JSValue Use-After-Free in ValueProfiles Exploit
CVE-2019-8666
CVE-2019-8689 3 exploits
Webkit JSC: JIT - Uninitialized Variable Access in ArgumentsEliminationPhase::transform ExploitWebkit JSC: JIT - Uninitialized Variable Access in ArgumentsEliminationPhase::transform
CVE-2019-8687
CVE-2019-8686
CVE-2019-8683
CVE-2019-8681
CVE-2019-8680
CVE-2019-8678 1 exploit
CVE-2019-8677
CVE-2017-7041 4 exploits
WebKit: use-after-free in WebCore::Node::getFlag(CVE-2017-7041)WebKit WebCore::Node::getFlag Use-After-Free
CVE-2017-7042 4 exploits
WebKit: use-after-free in WebCore::InputType::element(CVE-2017-7042)WebKit WebCore::InputType::element Use-After-Free
CVE-2010-1825
CVE-2010-1824
CVE-2010-0050 1 exploit
CVE-2010-0049 2 exploits
webkit innerHTML UAF PoC ( CVE-2010-0049)WebKit 1.2.x - Right-to-Left Displayed Text Handling Memory Corruption
CVE-2009-2195 5 exploits
Safari WebKit floating point number buffer overflowSafari WebKit floating point number buffer overflow
CVE-2009-1701 1 exploit
CVE-2023-28198