Vulnerability · NVD
CVE-2026-86898
CVE-2026-86898 : Severity pending severity (CVSS —). No tracked catalog app is linked to this CVE.
- Severity (CVSS)
- -
- Exploitation
- -
- Tracked apps
- 0
- Still exposed
- 0
A logic issue was addressed with improved state management. This issue is fixed in Safari 27, iOS 27 and iPadOS 27, macOS Golden Gate 27, visionOS 27. Opening a maliciously crafted webarchive file may lead to universal cross-site scripting.
OS versions that fix this CVE
This CVE is resolved by the following OS security releases. Update the OS to at least the listed version.