Junglewise Threat Intelligence

CVE-2026-64730: Apple Safari and OSs UI spoofing via malicious framed content

CVE-2026-64730 · Severity: info · CVSS 0 · Published 2026-07-27

Technologies: Apple Tvos, Apple macOS, Apple Safari, Apple watchOS, Apple Visionos, Apple iPadOS. Vendors: Apple.

Executive brief

A vulnerability in Apple's web browser and operating systems could allow a malicious website to trick users by spoofing the user interface. This could lead to users interacting with fraudulent content that appears to be from a legitimate source. The issue has been addressed in the latest software updates for iPhone, iPad, Mac, and other Apple devices.

Technical details

A UI spoofing vulnerability exists in Apple Safari and multiple Apple operating systems (iOS, iPadOS, macOS, tvOS, visionOS, and watchOS) when handling framed content. By visiting a website that frames malicious content, an attacker could potentially deceive a user through interface manipulation. The root cause was addressed by improving the user interface logic to prevent such spoofing. The vulnerability is fixed in Safari 26.6, iOS 26.6, iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, and watchOS 26.6.

Affected products

  • Apple Safari Before 26.6
  • Apple iOS and iPadOS Before 26.6
  • Apple macOS Before 26.6
  • Apple tvOS Before 26.6
  • Apple visionOS Before 26.6
  • Apple watchOS Before 26.6

Timeline

  • 2026-07-27: disclosed
  • 2026-07-27: patched

References

Related threats