A use-after-free issue in WebKitGTK can cause memory corruption when processing malicious web content. This flaw, identified as CVE-2026-78376, was found due to improper memory handling. WebKitGTK is a part of the WebKit engine used for rendering web content in various applications. The vulnerability can lead to potential security issues if not addressed. Defenders should assess the exposure of applicatio [truncated]
CVE-2016-9642 describes a denial-of-service issue in WebKit’s JavaScriptCore engine caused by an out-of-bounds heap read. The issue is classified as CWE-125 and, per NVD, has a CVSS 3.0 score of 5.5 (MEDIUM) with availability impact only. The supplied CVSS vector indicates local access plus user interaction, which fits a scenario where a crafted JavaScript file is opened or otherwise processed by the affe [truncated]