185 exploited vulnerabilities in Webkit
- Vendors
- Almalinux, Centos, Apple, Red Hat, Rocky Linux, Suse
- With known exploits
- 185
- Affected Apple Safari versions
- < 14.1, 13.1.1, 11.1.1, 11.1, 11.0.3, 10.1.2, 10.1, 11.0.1
- Affected Apple Ipados versions
- < 14.5, 13.5
- Affected Apple Iphone Os versions
- < 12.5.3, 14.5, 13.5, 11.4, 11.3, 11.2.5, 10.3.3, 10.3.1, 10.3.2, 10.2.1, 10.2.0, 11.1
- Affected Apple Macos versions
- < 11.3
- Affected Apple Tvos versions
- < 14.5, 13.4.5, 11.4, 11.3, 10.2.2, 10.2, 10.2.1, 10.1.1, 11.1
- Affected Apple Watchos versions
- < 7.4, 6.2.5, 4.3.1, 4.3, 3.2.2
- Affected Apple Icloud versions
- < 7.19, 11.2, 6.2.2, 7.1
- Affected Apple Itunes versions
- < 12.10.7, 12.6.2, 12.7.1
Vulnerabilities with exploits
Highest CVSS first — 48 of these already have exploit code on Sploitus
CVE-2021-30661
CVE-2020-9802 2 exploits
CVE-2020-9807
CVE-2018-4233 11 exploits
Exploit for Improper Restriction of Operations within the Bounds of a Memory Buffer in Apple SafariExploit for CVE-2016-2434
CVE-2018-4222 3 exploits
CVE-2018-4204 1 exploit
CVE-2018-4121 5 exploits
WebKitGTK+ Memory Corruption / Code Execution VulnerabilityExploit for Improper Restriction of Operations within the Bounds of a Memory Buffer in Apple Safari
CVE-2018-4089 3 exploits
CVE-2017-7117 7 exploits
PS4-12.00-JailbreakExploit for Improper Restriction of Operations within the Bounds of a Memory Buffer in Apple Safari
CVE-2017-7061 4 exploits
WebKit: JSC: Incorrect optimization in BytecodeGenerator::emitGetByVal(CVE-2017-7061)WebKit JSC BytecodeGenerator::emitGetByVal Incorrect Optimization
CVE-2017-7056 4 exploits
WebKit: JSC: Incorrect LoadVarargs handling in ArgumentsEliminationPhase::transform(CVE-2017-7056)WebKit JSC ArgumentsEliminationPhase::transform Incorrect LoadVarargs Handling Vulnerability
CVE-2017-7048 4 exploits
WebKit: use-after-free in WebCore::AccessibilityNodeObject::textUnderElement(CVE-2017-7048)WebKit WebCore::AccessibilityNodeObject::textUnderElement Use-After-Free
CVE-2017-7046 4 exploits
WebKit: use-after-free in WebCore::RenderObject with accessibility enabled(CVE-2017-7046)WebKit WebCore::RenderObject Use-After-Free
CVE-2017-7043 4 exploits
WebKit: use-after-free in WebCore::AccessibilityRenderObject::handleAriaExpandedChanged(CVE-2017-7043)WebKit WebCore::AccessibilityRenderObject::handleAriaExpandedChanged Use-After-Free
CVE-2017-7040 4 exploits
WebKit: use-after-free in WebCore::getCachedWrapper(CVE-2017-7040)WebKit WebCore::getCachedWrapper Use-After-Free
CVE-2017-7039 4 exploits
WebKit: use-after-free in WebCore::Node::nextSibling(CVE-2017-7039)WebKit WebCore::Node::nextSibling Use-After-Free
CVE-2017-7037 4 exploits
WebKit: JSC: UXSS via JSObject::putInlineSlow and JSValue::putToPrimitive(CVE-2017-7037)WebKit JSC - 'JSObject::putInlineSlow' / 'JSValue::putToPrimitive' Universal Cross-Site Scripting
CVE-2017-6984 3 exploits
WebKit JSC - Heap Buffer Overflow in Intl.getCanonicalLocales ExploitWebKit JSC - 'Intl.getCanonicalLocales' Heap Buffer Overflow
CVE-2017-6980 3 exploits
WebKit JSC - arrayProtoFuncSplice does not Initialize all Indices ExploitWebKit JSC - arrayProtoFuncSplice does not Initialize all Indices
CVE-2017-2547 4 exploits
Exploit for CVE-2016-2434WebKit JSC - JIT Optimization Check Failed in IntegerCheckCombiningPhase::handleBlock Exploit
CVE-2017-2536 3 exploits
Apple Safari 10.1 - Spread Operator Integer Overflow Remote Code Execution ExploitApple Safari 10.1 - Spread Operator Integer Overflow Remote Code Execution
CVE-2017-2531 4 exploits
WebKit JSC emitPutDerivedConstructorToArrowFunctionContextScope Incorrect Check(CVE-2017-2531)WebKit JSC emitPutDerivedConstructorToArrowFunctionContextScope Incorrect Check
CVE-2017-2521 4 exploits
WebKit Unspecified Memory Corruption Vulnerability(CVE-2017-2521)WebKit JSC JSObject::ensureLength Failure Check Vulnerability
CVE-2017-2515 3 exploits
WebKit - 'FrameLoader::clear' Stealing Variables via Page NavigationWebKit FrameLoader::clear Variable Theft
CVE-2017-2514 4 exploits
WebKit WebCore::FrameView::scheduleRelayout Use-After-Free(CVE-2017-2514)Apple WebKit / Safari 10.0.3(12602.4.8) - WebCore::FrameView::scheduleRelayout Use-After-Free Exploi
CVE-2017-2373 4 exploits
Apple WebKit: Type confusion in RenderBox with accessibility enabled(CVE-2017-2373)Apple WebKit - Type Confusion in RenderBox with Accessibility Enabled Exploit
CVE-2017-2369 3 exploits
Apple WebKit - HTMLKeygenElement Type Confusion ExploitApple WebKit - 'HTMLKeygenElement' Type Confusion
CVE-2017-2362 4 exploits
Apple WebKit: HTMLFormElement::reset() use-after free(CVE-2017-2362)Apple WebKit - HTMLFormElement::reset() Use-After Free Exploit
CVE-2017-13802 4 exploits
WebKit: use-after-free in WebCore::Style::TreeResolver::styleForElement(CVE-2017-13802)WebKit - WebCore::Style::TreeResolver::styleForElement Use-After-Free Exploit
CVE-2017-13798 5 exploits
WebKit WebCore::RenderObject::previousSibling Use-After-FreeWebKit: use-after-free in WebCore::RenderObject::previousSibling(CVE-2017-13798)
CVE-2017-13797 4 exploits
WebKit: use-after-free in WebCore::PositionIterator::decrement(CVE-2017-13797)WebKit - WebCore::PositionIterator::decrement Use-After-Free Exploit
CVE-2017-13796 4 exploits
WebKit: use-after-free in WebCore::TreeScope::documentScope(CVE-2017-13796)WebKit - 'WebCore::TreeScope::documentScope' Use-After-Free
CVE-2017-13795 3 exploits
WebKit: use-after-free in WebCore::AXObjectCache::performDeferredCacheUpdate(CVE-2017-13795)WebKit - WebCore::AXObjectCache::performDeferredCacheUpdate Use-After-Free Exploit
CVE-2017-13794 4 exploits
WebKit: use-after-free in WebCore::DocumentLoader::frameLoader(CVE-2017-13794)WebKit - WebCore::DocumentLoader::frameLoader Use-After-Free Exploit
CVE-2017-13792 4 exploits
WebKit: use-after-free in WebCore::InputType::element(CVE-2017-13792)WebKit - WebCore::InputType::element Use-After-Free Exploit
CVE-2017-13791 4 exploits
WebKit WebCore::FormSubmission::create Use-After-FreeWebKit: use-after-free in WebCore::FormSubmission::create(CVE-2017-13791)
CVE-2017-13785 4 exploits
WebKit: out-of-bounds read in WebCore::RenderText::localCaretRect(CVE-2017-13785)WebKit - WebCore::RenderText::localCaretRect Out-of-Bounds Read Exploit
CVE-2017-13784 4 exploits
WebKit: out-of-bounds read in WebCore::SimpleLineLayout::RunResolver::runForPoint(CVE-2017-13784)WebKit - WebCore::SimpleLineLayout::RunResolver::runForPoint Out-of-Bounds Read Exploit
CVE-2017-13783 4 exploits
WebKit: out-of-bounds read in WebCore::SVGPatternElement::collectPatternAttributes(CVE-2017-13783)WebKit - WebCore::SVGPatternElement::collectPatternAttributes Out-of-Bounds Read Exploit
CVE-2017-7049 4 exploits
WebKit: heap-buffer-overflow in WebCore::RenderSearchField::addSearchResult(CVE-2017-7049)WebKit WebCore::RenderSearchField::addSearchResult Heap Buffer Overflow
CVE-2017-2470 4 exploits
Apple WebKit - JSC::B3::Procedure::resetReachability Use-After-Free ExploitApple WebKit - 'JSC::B3::Procedure::resetReachability' Use-After-Free
CVE-2017-2471 4 exploits
CVE-2017-2476 4 exploits
CVE-2017-2454 4 exploits
CVE-2017-2455 4 exploits
CVE-2017-2457 4 exploits
WebKit constructJSReadableStreamDefaultReader Type ConfusionApple WebKit 10.0.2(12602.3.12.0.1, r210800) - constructJSReadableStreamDefaultReader Type Confusion
CVE-2017-2459 4 exploits
WebKit HTMLFormElement Negative-Size MemmoveApple WebKit - Negative-Size memmove in HTMLFormElement Exploit
CVE-2017-2460 4 exploits
WebKit FormSubmission::create Use-After-FreeApple WebKit - FormSubmission::create Use-After-Free Exploit
CVE-2017-2464 3 exploits
CVE-2017-2466 4 exploits