Search CVE reports


Toggle filters

131 – 140 of 825 results


CVE-2025-24216

Medium priority

Some fixes available 4 of 19

The issue was addressed with improved memory handling. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, tvOS 18.4, visionOS 2.4, watchOS 11.4. Processing maliciously crafted web...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src — Ignored Ignored Ignored Ignored
qtwebkit-source — Not in release Not in release Not in release Ignored
webkit2gtk — Fixed Fixed Ignored Ignored
webkitgtk — Not in release Not in release Not in release Ignored
wpewebkit — Not in release Ignored Ignored —
Show less packages

CVE-2025-24213

Medium priority

Some fixes available 4 of 19

This issue was addressed with improved handling of floats. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. A type confusion issue could lead...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src — Ignored Ignored Ignored Ignored
qtwebkit-source — Not in release Not in release Not in release Ignored
webkit2gtk — Fixed Fixed Ignored Ignored
webkitgtk — Not in release Not in release Not in release Ignored
wpewebkit — Not in release Ignored Ignored —
Show less packages

CVE-2025-24209

Medium priority

Some fixes available 4 of 19

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, tvOS 18.4, watchOS 11.4. Processing maliciously crafted web...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src — Ignored Ignored Ignored Ignored
qtwebkit-source — Not in release Not in release Not in release Ignored
webkit2gtk — Fixed Fixed Ignored Ignored
webkitgtk — Not in release Not in release Not in release Ignored
wpewebkit — Not in release Ignored Ignored —
Show less packages

CVE-2025-24208

Medium priority

Some fixes available 4 of 19

A permissions issue was addressed with additional restrictions. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4. Loading a malicious iframe may lead to a cross-site scripting attack.

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src — Ignored Ignored Ignored Ignored
qtwebkit-source — Not in release Not in release Not in release Ignored
webkit2gtk — Fixed Fixed Ignored Ignored
webkitgtk — Not in release Not in release Not in release Ignored
wpewebkit — Not in release Ignored Ignored —
Show less packages

CVE-2024-54551

Medium priority

Some fixes available 4 of 19

The issue was addressed with improved memory handling. This issue is fixed in Safari 17.6, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, visionOS 1.3, watchOS 10.6. Processing web content may lead to a denial-of-service.

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src — Ignored Ignored Ignored Ignored
qtwebkit-source — Not in release Not in release Not in release Ignored
webkit2gtk — Fixed Fixed Ignored Ignored
webkitgtk — Not in release Not in release Not in release Ignored
wpewebkit — Not in release Ignored Ignored —
Show less packages

CVE-2025-24201

High priority

Some fixes available 3 of 18

An out-of-bounds write issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in Safari 18.3.1, iOS 15.8.4 and iPadOS 15.8.4, iOS 16.7.11 and iPadOS 16.7.11, iOS 18.3.2 and iPadOS 18.3.2,...

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src — Ignored Ignored Ignored Ignored
qtwebkit-source — Not in release Not in release Not in release Ignored
webkit2gtk — Fixed Fixed Ignored Ignored
webkitgtk — Not in release Not in release Not in release Ignored
wpewebkit — Not in release Ignored Ignored —
Show less packages

CVE-2024-54467

Medium priority

Some fixes available 3 of 18

A cookie management issue was addressed with improved state management. This issue is fixed in Safari 18, iOS 18 and iPadOS 18, macOS Sequoia 15, tvOS 18, visionOS 2, watchOS 11. A malicious website may exfiltrate data cross-origin.

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src — Ignored Ignored Ignored Ignored
qtwebkit-source — Not in release Not in release Not in release Ignored
webkit2gtk — Fixed Fixed Ignored Ignored
webkitgtk — Not in release Not in release Not in release Ignored
wpewebkit — Not in release Ignored Ignored —
Show less packages

CVE-2024-44192

Medium priority

Some fixes available 3 of 18

The issue was addressed with improved checks. This issue is fixed in Safari 18, iOS 18 and iPadOS 18, macOS Sequoia 15, tvOS 18, visionOS 2, watchOS 11. Processing maliciously crafted web content may lead to an unexpected process crash.

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src — Ignored Ignored Ignored Ignored
qtwebkit-source — Not in release Not in release Not in release Ignored
webkit2gtk — Fixed Fixed Ignored Ignored
webkitgtk — Not in release Not in release Not in release Ignored
wpewebkit — Not in release Ignored Ignored —
Show less packages

CVE-2024-54658

Medium priority

Some fixes available 1 of 16

The issue was addressed with improved memory handling. This issue is fixed in Safari 17.4, iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4, visionOS 1.1, watchOS 10.4. Processing web content may lead to a denial-of-service.

5 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit2gtk, webkitgtk, wpewebkit

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src — Ignored Ignored Ignored Ignored
qtwebkit-source — Not in release Not in release Not in release Ignored
webkit2gtk — Not affected Fixed Ignored Ignored
webkitgtk — Not in release Not in release Not in release Ignored
wpewebkit — Not in release Ignored Ignored —
Show less packages

CVE-2025-0444

Medium priority
Vulnerable

Use after free in Skia in Google Chrome prior to 133.0.6943.53 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

7 affected packages

chromium-browser, libskia, webkitgtk, webkit2gtk, qtwebkit-source...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
chromium-browser Not affected Not affected Not affected — —
libskia Needs evaluation Not in release Not in release — —
webkitgtk Not in release Not in release Not in release — Ignored
webkit2gtk Vulnerable Vulnerable Ignored Ignored Ignored
qtwebkit-source Not in release Not in release Not in release — Ignored
qtwebkit-opensource-src Not in release Ignored Ignored Ignored Ignored
wpewebkit Not in release Not in release Ignored Ignored —
Show all 7 packages Show less packages