← Back

Safari

safari

Vendor: Apple • 1,598 CVEs

CVEs (1,598)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Apple
1Safari
Apr 29, 2026
Mar 8, 2012
N/A· v4
N/A· v3
7.6 HIGH· v2
Use-after-free vulnerability in Apple Safari 5.1.2, when a plug-in with a blocking function is installed, allows user-assisted remote attackers to execute arbitrary code via a crafted web page that is accessed during use...Show more
Use-after-free vulnerability in Apple Safari 5.1.2, when a plug-in with a blocking function is installed, allows user-assisted remote attackers to execute arbitrary code via a crafted web page that is accessed during user interaction with the plug-in, leading to improper coordination between an API call and the plug-in unloading functionality, as demonstrated by the Adobe Flash and RealPlayer plug-ins.Show less
1Apple
1Safari
Apr 29, 2026
Mar 8, 2012
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Apple Safari 5.0.5 does not properly implement the setInterval function, which allows remote attackers to spoof the address bar via a crafted web page.
3Apple
GoogleOpensuse
5Chrome
Iphone OsItunes+2 more
Apr 29, 2026
Mar 5, 2012
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG animation elements.
3Apple
GoogleOpensuse
5Chrome
Iphone OsItunes+2 more
Apr 29, 2026
Mar 5, 2012
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving a flexbox (aka flexible box) in conjun...Show more
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving a flexbox (aka flexible box) in conjunction with the floating of elements.Show less
3Apple
GoogleOpensuse
5Chrome
Iphone OsItunes+2 more
Apr 29, 2026
Mar 5, 2012
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of table sections.
3Apple
GoogleOpensuse
5Chrome
Iphone OsItunes+2 more
Apr 29, 2026
Mar 5, 2012
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of class attributes.
3Apple
GoogleOpensuse
5Chrome
Iphone OsItunes+2 more
Apr 29, 2026
Mar 5, 2012
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Google Chrome before 17.0.963.65 does not properly handle text, which allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted document.
3Apple
GoogleOpensuse
5Chrome
Iphone OsItunes+2 more
Apr 29, 2026
Mar 5, 2012
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to quote handling.
3Apple
GoogleOpensuse
5Chrome
Iphone OsItunes+2 more
Apr 29, 2026
Mar 5, 2012
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to multi-column handling.
3Apple
GoogleOpensuse
5Chrome
Iphone OsItunes+2 more
Apr 29, 2026
Mar 5, 2012
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Google Chrome before 17.0.963.65 does not properly perform casts of unspecified variables during the splitting of anonymous blocks, which allows remote attackers to cause a denial of service or possibly have unknown othe...Show more
Google Chrome before 17.0.963.65 does not properly perform casts of unspecified variables during the splitting of anonymous blocks, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted document.Show less
3Apple
GoogleOpensuse
5Chrome
Iphone OsItunes+2 more
Apr 29, 2026
Mar 5, 2012
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Google Chrome before 17.0.963.65 does not properly perform a cast of an unspecified variable during handling of line boxes, which allows remote attackers to cause a denial of service or possibly have unknown other impact...Show more
Google Chrome before 17.0.963.65 does not properly perform a cast of an unspecified variable during handling of line boxes, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted document.Show less
3Apple
GoogleOpensuse
5Chrome
Iphone OsItunes+2 more
Apr 29, 2026
Mar 5, 2012
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG use elements.
3Apple
GoogleOpensuse
5Chrome
Iphone OsItunes+2 more
Apr 29, 2026
Mar 5, 2012
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving an SVG document.
3Apple
GoogleOpensuse
5Chrome
Iphone OsItunes+2 more
Apr 29, 2026
Mar 5, 2012
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of SVG values.
1Apple
1Safari
Apr 29, 2026
Mar 2, 2012
N/A· v4
N/A· v3
7.5 HIGH· v2
Use-after-free vulnerability in WebKit, as used in Apple Safari before 5.0.6, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption and application crash) via vectors rela...Show more
Use-after-free vulnerability in WebKit, as used in Apple Safari before 5.0.6, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption and application crash) via vectors related to improper list management for Cascading Style Sheets (CSS) @font-face rules.Show less
2Apple
Google
4Chrome
Iphone OsItunes+1 more
Apr 29, 2026
Feb 16, 2012
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Google Chrome before 17.0.963.56 does not properly perform a cast of an unspecified variable during handling of columns, which allows remote attackers to cause a denial of service or possibly have unknown other impact vi...Show more
Google Chrome before 17.0.963.56 does not properly perform a cast of an unspecified variable during handling of columns, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted document.Show less
2Apple
Google
4Chrome
Iphone OsItunes+1 more
Apr 29, 2026
Feb 16, 2012
N/A· v4
N/A· v3
7.5 HIGH· v2
Use-after-free vulnerability in Google Chrome before 17.0.963.56 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to subframe loading.
2Apple
Google
4Chrome
Iphone OsItunes+1 more
Apr 29, 2026
Feb 16, 2012
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Use-after-free vulnerability in Google Chrome before 17.0.963.56 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving counter nodes, related to a "read-afte...Show more
Use-after-free vulnerability in Google Chrome before 17.0.963.56 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving counter nodes, related to a "read-after-free" issue.Show less
2Apple
Google
4Chrome
Iphone OsItunes+1 more
Apr 29, 2026
Feb 9, 2012
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Use-after-free vulnerability in Google Chrome before 17.0.963.46 allows user-assisted remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to mousemove events.
2Apple
Google
4Chrome
Iphone OsItunes+1 more
Apr 29, 2026
Feb 9, 2012
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Use-after-free vulnerability in Google Chrome before 17.0.963.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to layout of SVG documents.