CVE-2016-4587: Apple Webkit

Medium severity, CVSS 6.5. EPSS: 2.1% chance of exploitation in the next 30 days.

WebKit in Apple iOS before 9.3.3 and tvOS before 9.2.2 allows remote attackers to obtain sensitive information from uninitialized process memory via a crafted web site.

Affected products

  • Apple Webkit: any version

Published 2016-07-22. Last modified 2026-06-17.