7.0

CVSS3.1

CVE-2026-20617 - Race Condition in Apple OSs Allowing Privilege Escalation to Root

A race condition was addressed with improved state handling. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Sonoma 14.8.4, macOS Tahoe 26.3, tvOS 26.3, visionOS 26.3, watchOS 26.3. An app may be able to gain root privileges.

πŸ“… Published: Feb. 11, 2026, 10:58 p.m. πŸ”„ Last Modified: April 16, 2026, 7 a.m.

5.3

CVSS3.1

CVE-2026-20682 - Access to Deleted Notes via Logic Flaw

A logic issue was addressed with improved state management. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPadOS 26.3. An attacker may be able to discover a user’s deleted notes.

πŸ“… Published: Feb. 11, 2026, 10:58 p.m. πŸ”„ Last Modified: April 15, 2026, 9:15 p.m.

8.8

CVSS3.1

CVE-2026-20616 - Out-of-Bounds Write in USD File Handling Leading to App Termination

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, macOS Sonoma 14.8.4, macOS Tahoe 26.3, visionOS 26.3. Processing a maliciously crafted USD file may lead to unexpected app termination.

πŸ“… Published: Feb. 11, 2026, 10:58 p.m. πŸ”„ Last Modified: April 15, 2026, 9:15 p.m.

7.1

CVSS3.1

CVE-2026-20641 - App Information Disclosure via Installed App Enumeration

A privacy issue was addressed with improved checks. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPadOS 26.3, macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macOS Tahoe 26.3, tvOS 26.3, visionOS 26.3, watchOS 26.3. An app may be able to identify what other apps a user has installed.

πŸ“… Published: Feb. 11, 2026, 10:58 p.m. πŸ”„ Last Modified: April 15, 2026, 9:15 p.m.

9

CVSS3.1

CVE-2026-20677 - Race condition in symbolic link handling allows sandbox escape on Apple OS

A race condition was addressed with improved handling of symbolic links. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPadOS 26.3, macOS Sonoma 14.8.4, macOS Tahoe 26.3, visionOS 26.3. A shortcut may be able to bypass sandbox restrictions.

πŸ“… Published: Feb. 11, 2026, 10:58 p.m. πŸ”„ Last Modified: April 16, 2026, 1 a.m.

5.5

CVSS3.1

CVE-2025-43403 - macOS Authorization Bug Allowing Apps Access to Sensitive User Data

An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.4, macOS Sonoma 14.8.4. An app may be able to access sensitive user data.

πŸ“… Published: Feb. 11, 2026, 10:58 p.m. πŸ”„ Last Modified: April 22, 2026, 8:15 p.m.

7.7

CVSS3.1

CVE-2026-20620 - Out-of-Bounds Read Allowing Kernel Memory Exposure and System Crash in macOS

An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macOS Tahoe 26.3. An attacker may be able to cause unexpected system termination or read kernel memory.

πŸ“… Published: Feb. 11, 2026, 10:58 p.m. πŸ”„ Last Modified: April 16, 2026, 1 a.m.

6.5

CVSS3.1

CVE-2026-20636 - webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.3, iOS 26.3 and iPadOS 26.3, macOS Tahoe 26.3, visionOS 26.3. Processing maliciously crafted web content may lead to an unexpected process crash.

πŸ“… Published: Feb. 11, 2026, 10:58 p.m. πŸ”„ Last Modified: April 16, 2026, 1 a.m.

5.7

CVSS3.1

CVE-2025-46302 - Malicious HID device can crash processes via bounds check failure

The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.2 and iPadOS 26.2, macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macOS Tahoe 26.2, tvOS 26.2, visionOS 26.2, watchOS 26.2. A malicious HID device may cause an unexpected process crash.

πŸ“… Published: Feb. 11, 2026, 10:58 p.m. πŸ”„ Last Modified: April 28, 2026, 9:45 a.m.

4.6

CVSS3.1

CVE-2026-20661 - Physical Access Authorization Bypass Allowing Sensitive Info Exposure on iOS and iPadOS

An authorization issue was addressed with improved state management. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPadOS 26.3. An attacker with physical access to a locked device may be able to view sensitive user information.

πŸ“… Published: Feb. 11, 2026, 10:58 p.m. πŸ”„ Last Modified: April 16, 2026, 7 a.m.
Total resulsts: 349182
Page 1670 of 34,919
Β« previous page Β» next page
Filters