CVE-2026-43700
Overview
Advisory: Apple Security Advisory
Impact:
Description: Processing maliciously crafted web content may disclose sensitive user information
Researchers: Vitaly Simonovich, Muhamad Syaiful, Christian Meurer Xavier
| Attribute | Value |
|---|---|
| CVE | CVE-2026-43700 |
| Bugzilla | 315368 |
| Component | WebCore |
| Bug Class | CrossOrigin |
| Severity | medium |
| Commit | 67b563b85f480c70… |
| Advisory | Apple Advisory |
Root Cause Analysis
A cross-origin issue was addressed with improved tracking of security origins.
Files Changed
Source Files
Source/WebCore/Modules/WebGPU/GPUDevice.cpp
Test Files
LayoutTests/fast/webgpu/regression/repro_315368-expected.txtLayoutTests/fast/webgpu/regression/repro_315368.htmlLayoutTests/fast/webgpu/regression/repro_315368b-expected.txtLayoutTests/fast/webgpu/regression/repro_315368b.html