CVE-2026-43746: Use After Free
A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. Processing maliciously crafted web content may lead to an unexpected Safari crash.
Other sources
IOGPUFamily. A race condition was addressed with improved state handling.
— Apple
Kernel. The issue was addressed with improved input sanitization.
— Apple
Kernel. This issue was addressed with improved input validation.
— Apple
libxslt. A double free issue was addressed with improved memory management.
— Apple
libxslt. The issue was addressed with improved memory handling.
— Apple
Credit
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 26.5.2
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2026-43704
- CVE-2026-43700
- CVE-2026-43735
- CVE-2026-43734
- CVE-2026-43726
- CVE-2026-43709
- CVE-2026-43699
- CVE-2026-43742
- CVE-2026-43732
- CVE-2026-43731
- CVE-2026-43715
- CVE-2026-43727
- CVE-2026-43725
- CVE-2026-43663
- CVE-2026-39872
- CVE-2026-43712
- CVE-2026-43716
- CVE-2026-43676
- CVE-2026-43740
- CVE-2026-43713
- CVE-2026-43708
- CVE-2026-43707
- CVE-2026-43705
- CVE-2026-43701
- CVE-2026-43745
- CVE-2026-43720
- CVE-2026-43721
- CVE-2026-28979
- CVE-2026-43718
- CVE-2026-43717
- CVE-2026-43746
- CVE-2026-43743
- CVE-2026-43724
- CVE-2026-43722
- CVE-2026-39868
- CVE-2026-43706
- CVE-2026-43703
- CVE-2026-43807
Frequently Asked Questions
What is the severity of CVE-2026-43746?
CVE-2026-43746 has a risk rating of 60.
What vulnerabilities are addressed in CVE-2026-43746?
CVE-2026-43746 addresses issues related to race conditions, input validation, and double free vulnerabilities.
How do I fix CVE-2026-43746?
To mitigate CVE-2026-43746, ensure that your Apple iOS, iPadOS, or macOS Tahoe devices are updated to the latest software version.
Which Apple products are affected by CVE-2026-43746?
CVE-2026-43746 affects Apple iOS, Apple iPadOS, and Apple macOS Tahoe.
What types of coding vulnerabilities are included in CVE-2026-43746?
CVE-2026-43746 includes vulnerabilities related to double free, use after free, input validation, and race conditions.