high Known exploitedREV. 01
CVE-2023-28205Apple WebKit — freed memory reached from a page
Crafted web content makes WebKit use memory after releasing it, and the attacker's code runs. Apple addressed it with better memory management and reports active exploitation.
Read the risk
THE VITAL STATS- CVSS score
- 8.8/ 10 CVSS v3.1
- EPSS probability
- 27% Likelihood of exploitation
- Attack complexity
- Low Conditions needed to exploit
- Known exploited
- Yes — CISA KEV
- CVE published
- 2023-04-10
- Added to KEV
- 2023-04-10
- Exploit published
- Not recorded
- Confidence
- high
- Kill chain
- execution
- MITRE ATT&CK
- T1203
- Severity
- high
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Attacker needsThe user must open attacker-controlled web content.
Fixed inSafari 16.4.1, iOS 16.4.1, iOS 15.7.5, macOS Ventura 13.3.1
Behind the card
2 REFERENCESField-level provenanceTRACE THE SOURCES +
Which source supports each field, when it was retrieved, and who extracted it.
| Fields | Source | Retrieved | Extractor | Confidence |
|---|---|---|---|---|
| cvss, exploitation.attack_complexity, exploitation.exploit_available, references, published_at | nvd.nist.gov | 2026-09-24 | scrty-crds-pipeline/0.1 | high |
| exploitation.known_exploited, exploitation.kev_added | cisa.gov | 2026-09-24 | scrty-crds-pipeline/0.1 | high |
| epss | api.first.org | 2026-09-24 | scrty-crds-pipeline/0.1 | high |
| title, summary, severity, remediation, mitre_attack, kill_chain, recommended_action, confidence, tags, exploitation.prerequisites | nvd.nist.gov | 2026-09-24 | claude-code | high |
Printing history
THE RECORD- r1Initial base card
First printing. This card has not been reprinted since publication.