Apple Patches 30+ iOS, macOS, Safari Flaws, Including AI-Discovered WebKit Bugs

2026-06-30T07:24:07Zc73dcf88590801c49f050e7496876083ab414974b05a7659b6b40be15a1e23a5
CVE-2026-12957CVE-2026-43503CVE-2026-46331CVE-2026-55200active-exploitationai-discovered-vulnerabilitiesamazon-qappledirtycloneedge-extensionsgoiosknown-exploited-vulnerabilitylibssh2linux-kernelmacosmalicious-browser-extensionnpmoracle-e-business-suitepedit-COWperplexity-extensionptc-windchillstego-adware','mustang-panda','zoho-workdrive','sharkloader','c2supply-chainwebkit

What happened

The Hacker News roundup (Jun 26–30, 2026) highlights multiple high-risk vulnerabilities, active exploitations, and notable malware/espionage activity. Key items: Apple released patches for 30+ iOS/macOS/Safari flaws including AI-discovered WebKit bugs (e.g., CVE-2026-43707); Oracle E‑Business Suite Payments flaw CVE-2026-46817 (CVSS 9.8) is being actively exploited; public PoC surfaced for critical libssh2 client bug CVE-2026-55200; two local Linux privilege-escalation/kernel exploits—pedit COW CVE-2026-46331 and DirtyClone CVE-2026-43503—have working exploits; Amazon Q Developer flaw CVE-2026

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
c73dcf88590801c49f050e7496876083ab414974b05a7659b6b40be15a1e23a5
Enrichment time
2026-06-30T07:24:07Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Apple Patches 30+ iOS, macOS, Safari Flaws, Including AI-Discovered WebKit Bugs · Baitaphish