Security Advisory

CVE-2026-28871

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-03-25 00:31:33
Last updated 2026-04-02 18:07:54
Assigner apple
State PUBLISHED

Description

A logic issue was addressed with improved checks. This issue is fixed in Safari 26.4, iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4. Visiting a maliciously crafted website may lead to a cross-site scripting attack.