CVE-2023-32439

Exploited in the Wild ✓ Confirmed 0-Day ★ Google Project Zero
Triaged: Feb. 18, 2026 19 articles

EPSS Score

Source: FIRST.org · 2026-05-24
1.16%
probability
This CVE has a 1.16% probability of being exploited in the next 30 days.
0% Top 78.8th percentile of all CVEs 100%
CVSS score unavailable
Neither CIRCL nor NVD returned a CVSS score for this CVE. View on VulnerabilityLookup ↗

Description

Project Zero
Type confusion

Attack Intelligence

Google Project Zero

Patched
June 21, 2023
Reported by
???
Root Cause Analysis
???

Signal Intelligence

Confidence
95%
EPSS 1.16%
Mentions 19
Last Seen Mar 11, 2025

CNA Information

Analyst Note

CVE-2023-32439 is a confirmed zero-day with strong evidence of active exploitation in sophisticated attacks, validated by Apple's official disclosure and Google Project Zero listing. The HIGH CVSS score (8.8), multiple security publications documenting real-world exploitation, and the vendor's acknowledgment of weaponized use establish this as a credible and serious vulnerability.

Triage Info

Decided atFeb 18, 2026