Apple Patches 30+ iOS, macOS, Safari Flaws, Including AI-Discovered WebKit Bugs
2026-06-30T07:24:07Z•c73dcf88590801c49f050e7496876083ab414974b05a7659b6b40be15a1e23a5
CVE-2026-12957CVE-2026-43503CVE-2026-46331CVE-2026-55200active-exploitationai-discovered-vulnerabilitiesamazon-qappledirtycloneedge-extensionsgoiosknown-exploited-vulnerabilitylibssh2linux-kernelmacosmalicious-browser-extensionnpmoracle-e-business-suitepedit-COWperplexity-extensionptc-windchillstego-adware','mustang-panda','zoho-workdrive','sharkloader','c2supply-chainwebkit
What happened
The Hacker News roundup (Jun 26–30, 2026) highlights multiple high-risk vulnerabilities, active exploitations, and notable malware/espionage activity. Key items: Apple released patches for 30+ iOS/macOS/Safari flaws including AI-discovered WebKit bugs (e.g., CVE-2026-43707); Oracle E‑Business Suite Payments flaw CVE-2026-46817 (CVSS 9.8) is being actively exploited; public PoC surfaced for critical libssh2 client bug CVE-2026-55200; two local Linux privilege-escalation/kernel exploits—pedit COW CVE-2026-46331 and DirtyClone CVE-2026-43503—have working exploits; Amazon Q Developer flaw CVE-2026
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- c73dcf88590801c49f050e7496876083ab414974b05a7659b6b40be15a1e23a5
- Enrichment time
- 2026-06-30T07:24:07Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.