CVE-2026-43804
Overview
Advisory: Apple Security Advisory
Impact:
Description: Visiting a website may lead to an app denial-of-service
Researchers: Heiko Kiesel of SEEMOO, TU Darmstadt
| Attribute | Value |
|---|---|
| CVE | CVE-2026-43804 |
| Bugzilla | 316816 |
| Component | WebCore |
| Bug Class | LogicError |
| Severity | medium |
| Commit | 2057f457fb75d4e5… |
| Advisory | Apple Advisory |
Root Cause Analysis
This issue was addressed through improved state management.
Files Changed
Source Files
Source/WebCore/loader/FrameLoader.cpp
Test Files
Tools/TestWebKitAPI/Tests/WebKitCocoa/VerifyUserGestureFromUIProcess.mm