Search
Find a vulnerability
Search criteria
3609 vulnerabilities found for macOS by Apple
CERTFR-2026-AVI-1236
Vulnerability from certfr_avis - Published: 2026-09-29 - Updated: 2026-09-29
Une vulnérabilité a été découverte dans les produits Apple. Elle permet à un attaquant de provoquer une exécution de code arbitraire à distance.
Apple indique que la vulnérabilité CVE-2026-86950 est activement exploitée.
Solutions
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
Impacted products
References
| Title | Publication Time | Tags | |||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|
|
|||||||||||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [
{
"description": "macOS Sequoia versions ant\u00e9rieures \u00e0 15.8.1",
"product": {
"name": "macOS",
"vendor": {
"name": "Apple",
"scada": false
}
}
},
{
"description": "iOS versions ant\u00e9rieures \u00e0 26.7.1",
"product": {
"name": "iOS",
"vendor": {
"name": "Apple",
"scada": false
}
}
},
{
"description": "iPadOS versions ant\u00e9rieures \u00e0 26.7.1",
"product": {
"name": "iPadOS",
"vendor": {
"name": "Apple",
"scada": false
}
}
},
{
"description": "macOS Tahoe versions ant\u00e9rieures \u00e0 26.7.1",
"product": {
"name": "macOS",
"vendor": {
"name": "Apple",
"scada": false
}
}
}
],
"affected_systems_content": "",
"content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
"cves": [
{
"name": "CVE-2026-86950",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86950"
}
],
"initial_release_date": "2026-09-29T00:00:00",
"last_revision_date": "2026-09-29T00:00:00",
"links": [],
"reference": "CERTFR-2026-AVI-1236",
"revisions": [
{
"description": "Version initiale",
"revision_date": "2026-09-29T00:00:00.000000"
}
],
"risks": [
{
"description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
}
],
"summary": "Une vuln\u00e9rabilit\u00e9 a \u00e9t\u00e9 d\u00e9couverte dans les produits Apple. Elle permet \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire \u00e0 distance.\n\nApple indique que la vuln\u00e9rabilit\u00e9 CVE-2026-86950 est activement exploit\u00e9e.",
"title": "Vuln\u00e9rabilit\u00e9 dans les produits Apple",
"vendor_advisories": [
{
"published_at": "2026-09-28",
"title": "Bulletin de s\u00e9curit\u00e9 Apple 149226",
"url": "https://support.apple.com/en-us/149226"
},
{
"published_at": "2026-09-28",
"title": "Bulletin de s\u00e9curit\u00e9 Apple 149229",
"url": "https://support.apple.com/en-us/149229"
},
{
"published_at": "2026-09-28",
"title": "Bulletin de s\u00e9curit\u00e9 Apple 149228",
"url": "https://support.apple.com/en-us/149228"
}
]
}
CERTFR-2026-AVI-1172
Vulnerability from certfr_avis - Published: 2026-09-15 - Updated: 2026-09-15
De multiples vulnérabilités ont été découvertes dans les produits Apple. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une élévation de privilèges et un déni de service à distance.
Solutions
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
Impacted products
| Vendor | Product | Description | ||
|---|---|---|---|---|
| Apple | iOS | iOS versions antérieures à 27 | ||
| Apple | macOS | macOS Tahoe versions antérieures à 26.7 | ||
| Apple | Safari | Safari versions antérieures à 27 | ||
| Apple | Xcode | Xcode versions antérieures à 27 | ||
| Apple | macOS | macOS Golden Gate versions antérieures à 27 | ||
| Apple | iOS | iOS versions antérieures à 26.7 | ||
| Apple | iPadOS | iPadOS versions antérieures à 26.7 | ||
| Apple | tvOS | tvOS versions antérieures à 27 | ||
| Apple | iPadOS | iPadOS versions antérieures à 27 | ||
| Apple | visionOS | visionOS versions antérieures à 26.6.1 | ||
| Apple | visionOS | visionOS versions antérieures à 27 | ||
| Apple | macOS | macOS Sequoia versions antérieures à 15.8 | ||
| Apple | watchOS | watchOS versions antérieures à 27 |
References
| Title | Publication Time | Tags | |||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
|||||||||||||||||||||||||||||||||||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [
{
"description": "iOS versions ant\u00e9rieures \u00e0 27",
"product": {
"name": "iOS",
"vendor": {
"name": "Apple",
"scada": false
}
}
},
{
"description": "macOS Tahoe versions ant\u00e9rieures \u00e0 26.7",
"product": {
"name": "macOS",
"vendor": {
"name": "Apple",
"scada": false
}
}
},
{
"description": "Safari versions ant\u00e9rieures \u00e0 27",
"product": {
"name": "Safari",
"vendor": {
"name": "Apple",
"scada": false
}
}
},
{
"description": "Xcode versions ant\u00e9rieures \u00e0 27",
"product": {
"name": "Xcode",
"vendor": {
"name": "Apple",
"scada": false
}
}
},
{
"description": "macOS Golden Gate versions ant\u00e9rieures \u00e0 27",
"product": {
"name": "macOS",
"vendor": {
"name": "Apple",
"scada": false
}
}
},
{
"description": "iOS versions ant\u00e9rieures \u00e0 26.7",
"product": {
"name": "iOS",
"vendor": {
"name": "Apple",
"scada": false
}
}
},
{
"description": "iPadOS versions ant\u00e9rieures \u00e0 26.7",
"product": {
"name": "iPadOS",
"vendor": {
"name": "Apple",
"scada": false
}
}
},
{
"description": "tvOS versions ant\u00e9rieures \u00e0 27",
"product": {
"name": "tvOS",
"vendor": {
"name": "Apple",
"scada": false
}
}
},
{
"description": "iPadOS versions ant\u00e9rieures \u00e0 27",
"product": {
"name": "iPadOS",
"vendor": {
"name": "Apple",
"scada": false
}
}
},
{
"description": "visionOS versions ant\u00e9rieures \u00e0 26.6.1",
"product": {
"name": "visionOS",
"vendor": {
"name": "Apple",
"scada": false
}
}
},
{
"description": "visionOS versions ant\u00e9rieures \u00e0 27",
"product": {
"name": "visionOS",
"vendor": {
"name": "Apple",
"scada": false
}
}
},
{
"description": "macOS Sequoia versions ant\u00e9rieures \u00e0 15.8",
"product": {
"name": "macOS",
"vendor": {
"name": "Apple",
"scada": false
}
}
},
{
"description": "watchOS versions ant\u00e9rieures \u00e0 27",
"product": {
"name": "watchOS",
"vendor": {
"name": "Apple",
"scada": false
}
}
}
],
"affected_systems_content": "",
"content": "## Solutions\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des correctifs (cf. section Documentation).",
"cves": [
{
"name": "CVE-2026-86886",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86886"
},
{
"name": "CVE-2026-86885",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86885"
},
{
"name": "CVE-2026-65362",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65362"
},
{
"name": "CVE-2026-28930",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-28930"
},
{
"name": "CVE-2026-86879",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86879"
},
{
"name": "CVE-2026-43697",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43697"
},
{
"name": "CVE-2026-65391",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65391"
},
{
"name": "CVE-2026-84566",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84566"
},
{
"name": "CVE-2026-84572",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84572"
},
{
"name": "CVE-2026-43664",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43664"
},
{
"name": "CVE-2026-84558",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84558"
},
{
"name": "CVE-2026-84553",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84553"
},
{
"name": "CVE-2026-84626",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84626"
},
{
"name": "CVE-2026-84549",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84549"
},
{
"name": "CVE-2026-64788",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64788"
},
{
"name": "CVE-2026-65337",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65337"
},
{
"name": "CVE-2026-84527",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84527"
},
{
"name": "CVE-2026-84487",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84487"
},
{
"name": "CVE-2026-86890",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86890"
},
{
"name": "CVE-2026-84556",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84556"
},
{
"name": "CVE-2026-84489",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84489"
},
{
"name": "CVE-2026-84520",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84520"
},
{
"name": "CVE-2026-65331",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65331"
},
{
"name": "CVE-2026-65352",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65352"
},
{
"name": "CVE-2026-43695",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43695"
},
{
"name": "CVE-2026-43738",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43738"
},
{
"name": "CVE-2026-84621",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84621"
},
{
"name": "CVE-2026-84517",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84517"
},
{
"name": "CVE-2026-84585",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84585"
},
{
"name": "CVE-2026-84522",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84522"
},
{
"name": "CVE-2026-86887",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86887"
},
{
"name": "CVE-2026-65381",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65381"
},
{
"name": "CVE-2026-43791",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43791"
},
{
"name": "CVE-2026-86905",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86905"
},
{
"name": "CVE-2026-84565",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84565"
},
{
"name": "CVE-2026-86902",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86902"
},
{
"name": "CVE-2026-84580",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84580"
},
{
"name": "CVE-2026-84559",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84559"
},
{
"name": "CVE-2026-65332",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65332"
},
{
"name": "CVE-2026-84491",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84491"
},
{
"name": "CVE-2026-65413",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65413"
},
{
"name": "CVE-2026-84615",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84615"
},
{
"name": "CVE-2026-43661",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43661"
},
{
"name": "CVE-2026-64760",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64760"
},
{
"name": "CVE-2026-65406",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65406"
},
{
"name": "CVE-2026-84611",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84611"
},
{
"name": "CVE-2026-64712",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64712"
},
{
"name": "CVE-2026-65365",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65365"
},
{
"name": "CVE-2026-65343",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65343"
},
{
"name": "CVE-2026-84630",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84630"
},
{
"name": "CVE-2026-84551",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84551"
},
{
"name": "CVE-2026-65400",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65400"
},
{
"name": "CVE-2026-43696",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43696"
},
{
"name": "CVE-2026-84635",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84635"
},
{
"name": "CVE-2026-84540",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84540"
},
{
"name": "CVE-2026-65364",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65364"
},
{
"name": "CVE-2026-65340",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65340"
},
{
"name": "CVE-2026-84538",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84538"
},
{
"name": "CVE-2026-64790",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64790"
},
{
"name": "CVE-2026-64761",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64761"
},
{
"name": "CVE-2026-43698",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43698"
},
{
"name": "CVE-2026-65399",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65399"
},
{
"name": "CVE-2026-84550",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84550"
},
{
"name": "CVE-2026-86895",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86895"
},
{
"name": "CVE-2026-65412",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65412"
},
{
"name": "CVE-2026-20683",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-20683"
},
{
"name": "CVE-2026-86876",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86876"
},
{
"name": "CVE-2022-3437",
"url": "https://www.cve.org/CVERecord?id=CVE-2022-3437"
},
{
"name": "CVE-2026-43763",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43763"
},
{
"name": "CVE-2026-84506",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84506"
},
{
"name": "CVE-2026-84512",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84512"
},
{
"name": "CVE-2026-84631",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84631"
},
{
"name": "CVE-2026-84544",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84544"
},
{
"name": "CVE-2026-65344",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65344"
},
{
"name": "CVE-2026-43691",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43691"
},
{
"name": "CVE-2026-64753",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64753"
},
{
"name": "CVE-2026-65360",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65360"
},
{
"name": "CVE-2026-64752",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64752"
},
{
"name": "CVE-2026-84620",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84620"
},
{
"name": "CVE-2026-84543",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84543"
},
{
"name": "CVE-2026-84629",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84629"
},
{
"name": "CVE-2026-84541",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84541"
},
{
"name": "CVE-2026-84505",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84505"
},
{
"name": "CVE-2026-64781",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64781"
},
{
"name": "CVE-2026-84623",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84623"
},
{
"name": "CVE-2026-84619",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84619"
},
{
"name": "CVE-2026-84513",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84513"
},
{
"name": "CVE-2026-84534",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84534"
},
{
"name": "CVE-2026-86888",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86888"
},
{
"name": "CVE-2026-84531",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84531"
},
{
"name": "CVE-2026-65345",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65345"
},
{
"name": "CVE-2026-84625",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84625"
},
{
"name": "CVE-2026-84497",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84497"
},
{
"name": "CVE-2026-84554",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84554"
},
{
"name": "CVE-2026-64787",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64787"
},
{
"name": "CVE-2026-65339",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65339"
},
{
"name": "CVE-2026-86897",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86897"
},
{
"name": "CVE-2026-86884",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86884"
},
{
"name": "CVE-2026-84596",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84596"
},
{
"name": "CVE-2026-86911",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86911"
},
{
"name": "CVE-2026-43674",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43674"
},
{
"name": "CVE-2026-84532",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84532"
},
{
"name": "CVE-2026-28935",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-28935"
},
{
"name": "CVE-2026-64718",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64718"
},
{
"name": "CVE-2026-84600",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84600"
},
{
"name": "CVE-2026-43737",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43737"
},
{
"name": "CVE-2026-84524",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84524"
},
{
"name": "CVE-2026-86904",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86904"
},
{
"name": "CVE-2026-86894",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86894"
},
{
"name": "CVE-2026-28969",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-28969"
},
{
"name": "CVE-2026-65395",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65395"
},
{
"name": "CVE-2026-84593",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84593"
},
{
"name": "CVE-2026-84597",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84597"
},
{
"name": "CVE-2026-84530",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84530"
},
{
"name": "CVE-2026-84533",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84533"
},
{
"name": "CVE-2026-65351",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65351"
},
{
"name": "CVE-2026-84576",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84576"
},
{
"name": "CVE-2026-28966",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-28966"
},
{
"name": "CVE-2026-84568",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84568"
},
{
"name": "CVE-2026-84616",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84616"
},
{
"name": "CVE-2026-84581",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84581"
},
{
"name": "CVE-2026-64779",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64779"
},
{
"name": "CVE-2026-65341",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65341"
},
{
"name": "CVE-2026-84589",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84589"
},
{
"name": "CVE-2026-86882",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86882"
},
{
"name": "CVE-2026-65377",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65377"
},
{
"name": "CVE-2026-65410",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65410"
},
{
"name": "CVE-2026-84516",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84516"
},
{
"name": "CVE-2026-43683",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43683"
},
{
"name": "CVE-2026-86917",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86917"
},
{
"name": "CVE-2026-43677",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43677"
},
{
"name": "CVE-2026-65404",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65404"
},
{
"name": "CVE-2026-43787",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43787"
},
{
"name": "CVE-2026-84518",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84518"
},
{
"name": "CVE-2026-43790",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43790"
},
{
"name": "CVE-2026-84617",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84617"
},
{
"name": "CVE-2026-65334",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65334"
},
{
"name": "CVE-2026-84563",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84563"
},
{
"name": "CVE-2026-43689",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43689"
},
{
"name": "CVE-2026-84521",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84521"
},
{
"name": "CVE-2026-65414",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65414"
},
{
"name": "CVE-2026-84612",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84612"
},
{
"name": "CVE-2026-84515",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84515"
},
{
"name": "CVE-2026-64782",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64782"
},
{
"name": "CVE-2026-84537",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84537"
},
{
"name": "CVE-2026-84525",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84525"
},
{
"name": "CVE-2026-84523",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84523"
},
{
"name": "CVE-2026-28934",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-28934"
},
{
"name": "CVE-2026-84574",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84574"
},
{
"name": "CVE-2026-86889",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86889"
},
{
"name": "CVE-2026-65346",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65346"
},
{
"name": "CVE-2026-34979",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-34979"
},
{
"name": "CVE-2026-64778",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64778"
},
{
"name": "CVE-2026-84601",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84601"
},
{
"name": "CVE-2026-65329",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65329"
},
{
"name": "CVE-2026-84555",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84555"
},
{
"name": "CVE-2026-64780",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64780"
},
{
"name": "CVE-2026-84514",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84514"
},
{
"name": "CVE-2026-65378",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65378"
},
{
"name": "CVE-2026-86878",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86878"
},
{
"name": "CVE-2026-86924",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86924"
},
{
"name": "CVE-2026-86869",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86869"
},
{
"name": "CVE-2026-65354",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65354"
},
{
"name": "CVE-2026-65405",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65405"
},
{
"name": "CVE-2026-84492",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84492"
},
{
"name": "CVE-2026-84586",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84586"
},
{
"name": "CVE-2026-43684",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43684"
},
{
"name": "CVE-2026-84583",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84583"
},
{
"name": "CVE-2026-84598",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84598"
},
{
"name": "CVE-2026-65393",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65393"
},
{
"name": "CVE-2026-43688",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43688"
},
{
"name": "CVE-2026-84571",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84571"
},
{
"name": "CVE-2026-43786",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43786"
},
{
"name": "CVE-2026-84546",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84546"
},
{
"name": "CVE-2026-86910",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86910"
},
{
"name": "CVE-2026-64714",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64714"
},
{
"name": "CVE-2026-43719",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43719"
},
{
"name": "CVE-2026-84606",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84606"
},
{
"name": "CVE-2026-86901",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86901"
},
{
"name": "CVE-2026-86881",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86881"
},
{
"name": "CVE-2026-43687",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43687"
},
{
"name": "CVE-2026-86903",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86903"
},
{
"name": "CVE-2026-65361",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65361"
},
{
"name": "CVE-2026-84577",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84577"
},
{
"name": "CVE-2026-84622",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84622"
},
{
"name": "CVE-2026-64758",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64758"
},
{
"name": "CVE-2026-65376",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65376"
},
{
"name": "CVE-2026-84588",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84588"
},
{
"name": "CVE-2026-65349",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65349"
},
{
"name": "CVE-2026-86870",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86870"
},
{
"name": "CVE-2026-65390",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65390"
},
{
"name": "CVE-2026-86900",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86900"
},
{
"name": "CVE-2026-43686",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43686"
},
{
"name": "CVE-2026-84636",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84636"
},
{
"name": "CVE-2026-84587",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84587"
},
{
"name": "CVE-2026-65380",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65380"
},
{
"name": "CVE-2026-43794",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43794"
},
{
"name": "CVE-2026-84548",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84548"
},
{
"name": "CVE-2026-65348",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65348"
},
{
"name": "CVE-2026-65355",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65355"
},
{
"name": "CVE-2026-65409",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65409"
},
{
"name": "CVE-2026-65403",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65403"
},
{
"name": "CVE-2026-65369",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65369"
},
{
"name": "CVE-2026-65382",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65382"
},
{
"name": "CVE-2026-84578",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84578"
},
{
"name": "CVE-2026-86891",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86891"
},
{
"name": "CVE-2026-84569",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84569"
},
{
"name": "CVE-2026-43702",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43702"
},
{
"name": "CVE-2026-84624",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84624"
},
{
"name": "CVE-2026-84609",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84609"
},
{
"name": "CVE-2026-28937",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-28937"
},
{
"name": "CVE-2026-84507",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84507"
},
{
"name": "CVE-2026-28899",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-28899"
},
{
"name": "CVE-2026-84575",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84575"
},
{
"name": "CVE-2026-84560",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84560"
},
{
"name": "CVE-2026-43743",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43743"
},
{
"name": "CVE-2026-65336",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65336"
},
{
"name": "CVE-2026-43692",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43692"
},
{
"name": "CVE-2026-43785",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43785"
},
{
"name": "CVE-2026-43741",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43741"
},
{
"name": "CVE-2026-84519",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84519"
},
{
"name": "CVE-2026-64784",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64784"
},
{
"name": "CVE-2026-84552",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84552"
},
{
"name": "CVE-2026-86892",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86892"
},
{
"name": "CVE-2026-64715",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64715"
},
{
"name": "CVE-2026-65371",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65371"
},
{
"name": "CVE-2026-65402",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65402"
},
{
"name": "CVE-2026-84509",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84509"
},
{
"name": "CVE-2026-28968",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-28968"
},
{
"name": "CVE-2026-65347",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65347"
},
{
"name": "CVE-2026-86893",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86893"
},
{
"name": "CVE-2026-43795",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43795"
},
{
"name": "CVE-2026-84618",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84618"
},
{
"name": "CVE-2026-86909",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86909"
},
{
"name": "CVE-2026-43788",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43788"
},
{
"name": "CVE-2026-86883",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86883"
},
{
"name": "CVE-2026-84567",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84567"
},
{
"name": "CVE-2026-65415",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65415"
},
{
"name": "CVE-2026-65383",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65383"
},
{
"name": "CVE-2026-84511",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84511"
},
{
"name": "CVE-2026-84628",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84628"
},
{
"name": "CVE-2026-84602",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84602"
},
{
"name": "CVE-2026-65411",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65411"
},
{
"name": "CVE-2026-84535",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84535"
},
{
"name": "CVE-2026-84561",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84561"
},
{
"name": "CVE-2026-65335",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65335"
},
{
"name": "CVE-2026-84584",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84584"
},
{
"name": "CVE-2026-84573",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84573"
},
{
"name": "CVE-2026-84570",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84570"
},
{
"name": "CVE-2026-84632",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84632"
},
{
"name": "CVE-2026-84526",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84526"
},
{
"name": "CVE-2026-65333",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65333"
},
{
"name": "CVE-2026-43789",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43789"
},
{
"name": "CVE-2026-84607",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84607"
},
{
"name": "CVE-2026-65408",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65408"
},
{
"name": "CVE-2026-84536",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84536"
},
{
"name": "CVE-2026-64736",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64736"
},
{
"name": "CVE-2026-43715",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43715"
},
{
"name": "CVE-2026-84564",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84564"
},
{
"name": "CVE-2026-43690",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43690"
},
{
"name": "CVE-2026-65342",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65342"
},
{
"name": "CVE-2026-65359",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65359"
},
{
"name": "CVE-2026-43760",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-43760"
},
{
"name": "CVE-2026-84510",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84510"
},
{
"name": "CVE-2026-65358",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65358"
},
{
"name": "CVE-2026-65374",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65374"
},
{
"name": "CVE-2026-65398",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65398"
},
{
"name": "CVE-2026-65338",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65338"
},
{
"name": "CVE-2026-84603",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-84603"
},
{
"name": "CVE-2026-65401",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65401"
},
{
"name": "CVE-2026-64756",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-64756"
},
{
"name": "CVE-2026-65330",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65330"
},
{
"name": "CVE-2026-65407",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65407"
},
{
"name": "CVE-2026-86898",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-86898"
},
{
"name": "CVE-2026-65375",
"url": "https://www.cve.org/CVERecord?id=CVE-2026-65375"
}
],
"initial_release_date": "2026-09-15T00:00:00",
"last_revision_date": "2026-09-15T00:00:00",
"links": [],
"reference": "CERTFR-2026-AVI-1172",
"revisions": [
{
"description": "Version initiale",
"revision_date": "2026-09-15T00:00:00.000000"
}
],
"risks": [
{
"description": "D\u00e9ni de service \u00e0 distance"
},
{
"description": "Injection de code indirecte \u00e0 distance (XSS)"
},
{
"description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
},
{
"description": "Atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es"
},
{
"description": "Contournement de la politique de s\u00e9curit\u00e9"
},
{
"description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
},
{
"description": "\u00c9l\u00e9vation de privil\u00e8ges"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans les produits Apple. Certaines d\u0027entre elles permettent \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire \u00e0 distance, une \u00e9l\u00e9vation de privil\u00e8ges et un d\u00e9ni de service \u00e0 distance.",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans les produits Apple",
"vendor_advisories": [
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Apple 149036",
"url": "https://support.apple.com/en-us/149036"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Apple 149041",
"url": "https://support.apple.com/en-us/149041"
},
{
"published_at": "2026-08-17",
"title": "Bulletin de s\u00e9curit\u00e9 Apple 148353",
"url": "https://support.apple.com/en-us/148353"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Apple 149035",
"url": "https://support.apple.com/en-us/149035"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Apple 149034",
"url": "https://support.apple.com/en-us/149034"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Apple 149042",
"url": "https://support.apple.com/en-us/149042"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Apple 149039",
"url": "https://support.apple.com/en-us/149039"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Apple 149038",
"url": "https://support.apple.com/en-us/149038"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Apple 149040",
"url": "https://support.apple.com/en-us/149040"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Apple 149043",
"url": "https://support.apple.com/en-us/149043"
},
{
"published_at": "2026-09-14",
"title": "Bulletin de s\u00e9curit\u00e9 Apple 149037",
"url": "https://support.apple.com/en-us/149037"
}
]
}
CVE-2026-86950 (GCVE-0-2026-86950)
Vulnerability from cvelistv5 – Published: 2026-09-28 19:13 – Updated: 2026-10-01 17:15
VLAI
EPSS
VEX
Summary
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and iPadOS 26.7.1, macOS Sequoia 15.8.1, macOS Tahoe 26.7.1. Processing a maliciously crafted file may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 27.
Severity
8.8 (High)
SSVC
Exploitation: active
Automatable: no
Technical Impact: total
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-30 03:55 UTC
CWE
- Processing a maliciously crafted file may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 27.
- CWE-787 - Out-of-bounds Write
Assigner
References
7 references
Impacted products
2 products
| Vendor | Product | Version | |
|---|---|---|---|
| Apple | iOS and iPadOS |
Affected:
0 , < 26.7.1
(custom)
|
|
| Apple | macOS |
Affected:
0 , < 15.8.1
(custom)
Affected: 0 , < 26.7.1 (custom) |
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "NETWORK",
"availabilityImpact": "HIGH",
"baseScore": 8.8,
"baseSeverity": "HIGH",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "REQUIRED",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-86950",
"options": [
{
"Exploitation": "active"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-30T03:55:58.823862Z",
"version": "2.0.3"
},
"type": "ssvc"
}
},
{
"other": {
"content": {
"dateAdded": "2026-09-29",
"reference": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-86950"
},
"type": "kev"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-787",
"description": "CWE-787 Out-of-bounds Write",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-10-01T17:15:57.969Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"references": [
{
"tags": [
"government-resource"
],
"url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-86950"
}
],
"title": "CISA ADP Vulnrichment"
},
{
"providerMetadata": {
"dateUpdated": "2026-09-29T07:15:33.456Z",
"orgId": "af854a3a-2127-422b-91ae-364da2661108",
"shortName": "CVE"
},
"references": [
{
"url": "http://seclists.org/fulldisclosure/2026/Sep/89"
},
{
"url": "http://seclists.org/fulldisclosure/2026/Sep/90"
},
{
"url": "http://seclists.org/fulldisclosure/2026/Sep/91"
}
],
"title": "CVE Program Container"
}
],
"cna": {
"affected": [
{
"product": "iOS and iPadOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "26.7.1",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8.1",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.7.1",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and iPadOS 26.7.1, macOS Sequoia 15.8.1, macOS Tahoe 26.7.1. Processing a maliciously crafted file may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 27."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "Processing a maliciously crafted file may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 27.",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-28T19:13:52.603Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149226"
},
{
"url": "https://support.apple.com/en-us/149228"
},
{
"url": "https://support.apple.com/en-us/149229"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-86950",
"datePublished": "2026-09-28T19:13:52.603Z",
"dateReserved": "2026-09-08T16:43:41.881Z",
"dateUpdated": "2026-10-01T17:15:57.969Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-65409 (GCVE-0-2026-65409)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:52 – Updated: 2026-09-15 17:46
VLAI
EPSS
VEX
Summary
A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause a denial of service.
Severity
5.5 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-15 17:43 UTC
CWE
- An app may be able to cause a denial of service
- CWE-843 - Access of Resource Using Incompatible Type ('Type Confusion')
Assigner
References
8 references
Impacted products
5 products
| Vendor | Product | Version | |
|---|---|---|---|
| Apple | iOS and iPadOS |
Affected:
0 , < 26.7
(custom)
Affected: 0 , < 27 (custom) |
|
| Apple | macOS |
Affected:
0 , < 15.8
(custom)
Affected: 0 , < 26.7 (custom) Affected: 0 , < 27 (custom) |
|
| Apple | tvOS |
Affected:
0 , < 27
(custom)
|
|
| Apple | visionOS |
Affected:
0 , < 27
(custom)
|
|
| Apple | watchOS |
Affected:
0 , < 27
(custom)
|
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "HIGH",
"baseScore": 5.5,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "REQUIRED",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-65409",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-15T17:43:56.878679Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-843",
"description": "CWE-843 Access of Resource Using Incompatible Type (\u0027Type Confusion\u0027)",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-15T17:46:56.951Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "iOS and iPadOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "tvOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "visionOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "watchOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause a denial of service."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "An app may be able to cause a denial of service",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:52:04.716Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149034"
},
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149036"
},
{
"url": "https://support.apple.com/en-us/149037"
},
{
"url": "https://support.apple.com/en-us/149038"
},
{
"url": "https://support.apple.com/en-us/149041"
},
{
"url": "https://support.apple.com/en-us/149042"
},
{
"url": "https://support.apple.com/en-us/149043"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-65409",
"datePublished": "2026-09-14T20:52:04.716Z",
"dateReserved": "2026-07-22T00:47:18.621Z",
"dateUpdated": "2026-09-15T17:46:56.951Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-84559 (GCVE-0-2026-84559)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:52 – Updated: 2026-09-17 14:10
VLAI
EPSS
VEX
Summary
A permissions issue was addressed with improved validation. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. A malicious application may be able to access restricted files.
Severity
5.5 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-17 13:38 UTC
CWE
- A malicious application may be able to access restricted files
- CWE-693 - Protection Mechanism Failure
Assigner
References
Impacted products
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "NONE",
"baseScore": 5.5,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "HIGH",
"integrityImpact": "NONE",
"privilegesRequired": "LOW",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-84559",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-17T13:38:55.514116Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-693",
"description": "CWE-693 Protection Mechanism Failure",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-17T14:10:55.425Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "A permissions issue was addressed with improved validation. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. A malicious application may be able to access restricted files."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "A malicious application may be able to access restricted files",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:52:03.667Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149042"
},
{
"url": "https://support.apple.com/en-us/149043"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-84559",
"datePublished": "2026-09-14T20:52:03.667Z",
"dateReserved": "2026-09-01T21:13:17.753Z",
"dateUpdated": "2026-09-17T14:10:55.425Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-43741 (GCVE-0-2026-43741)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:52 – Updated: 2026-09-15 19:20
VLAI
EPSS
VEX
Summary
A logic issue was addressed with improved state management. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to access protected user data.
Severity
5.5 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-15 19:20 UTC
CWE
- An app may be able to access protected user data
- CWE-284 - Improper Access Control
Assigner
References
Impacted products
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "NONE",
"baseScore": 5.5,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "HIGH",
"integrityImpact": "NONE",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "REQUIRED",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-43741",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-15T19:20:40.818517Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-284",
"description": "CWE-284 Improper Access Control",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-15T19:20:45.385Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "A logic issue was addressed with improved state management. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to access protected user data."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "An app may be able to access protected user data",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:52:01.606Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149042"
},
{
"url": "https://support.apple.com/en-us/149043"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-43741",
"datePublished": "2026-09-14T20:52:01.606Z",
"dateReserved": "2026-05-01T22:46:21.647Z",
"dateUpdated": "2026-09-15T19:20:45.385Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-28937 (GCVE-0-2026-28937)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:52 – Updated: 2026-09-15 19:28
VLAI
EPSS
VEX
Summary
This issue was addressed through improved state management. This issue is fixed in macOS Golden Gate 27. An app may be able to access sensitive user data.
Severity
5.5 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-15 19:28 UTC
CWE
- An app may be able to access sensitive user data
- CWE-284 - Improper Access Control
Assigner
References
1 reference
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "NONE",
"baseScore": 5.5,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "HIGH",
"integrityImpact": "NONE",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "REQUIRED",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-28937",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-15T19:28:00.570217Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-284",
"description": "CWE-284 Improper Access Control",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-15T19:28:15.122Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "This issue was addressed through improved state management. This issue is fixed in macOS Golden Gate 27. An app may be able to access sensitive user data."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "An app may be able to access sensitive user data",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:52:00.649Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149035"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-28937",
"datePublished": "2026-09-14T20:52:00.649Z",
"dateReserved": "2026-03-03T16:36:03.989Z",
"dateUpdated": "2026-09-15T19:28:15.122Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-86876 (GCVE-0-2026-86876)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-14 22:50
VLAI
EPSS
VEX
Summary
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, visionOS 27, watchOS 27. A sandboxed process may be able to circumvent sandbox restrictions.
Severity
5.2 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-14 22:50 UTC
CWE
- A sandboxed process may be able to circumvent sandbox restrictions
- CWE-787 - Out-of-bounds Write
Assigner
References
Impacted products
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "NONE",
"baseScore": 5.2,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "LOW",
"integrityImpact": "LOW",
"privilegesRequired": "LOW",
"scope": "CHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-86876",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-14T22:50:41.690826Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-787",
"description": "CWE-787 Out-of-bounds Write",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T22:50:45.086Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "iOS and iPadOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "visionOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "watchOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, visionOS 27, watchOS 27. A sandboxed process may be able to circumvent sandbox restrictions."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "A sandboxed process may be able to circumvent sandbox restrictions",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:59.688Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149034"
},
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149037"
},
{
"url": "https://support.apple.com/en-us/149038"
},
{
"url": "https://support.apple.com/en-us/149041"
},
{
"url": "https://support.apple.com/en-us/149042"
},
{
"url": "https://support.apple.com/en-us/149043"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-86876",
"datePublished": "2026-09-14T20:51:59.688Z",
"dateReserved": "2026-09-08T16:43:41.871Z",
"dateUpdated": "2026-09-14T22:50:45.086Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-84518 (GCVE-0-2026-84518)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-14 22:51
VLAI
EPSS
VEX
Summary
This issue was addressed through improved state management. This issue is fixed in Safari 27, iOS 27 and iPadOS 27, macOS Golden Gate 27. A malicious website may be able to determine what apps a user has installed.
Severity
4.3 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-14 22:51 UTC
CWE
- A malicious website may be able to determine what apps a user has installed
- CWE-642 - External Control of Critical State Data
Assigner
References
Impacted products
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "NETWORK",
"availabilityImpact": "NONE",
"baseScore": 4.3,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "LOW",
"integrityImpact": "NONE",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "REQUIRED",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-84518",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-14T22:51:34.978215Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-642",
"description": "CWE-642 External Control of Critical State Data",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T22:51:38.853Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "Safari",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "iOS and iPadOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "This issue was addressed through improved state management. This issue is fixed in Safari 27, iOS 27 and iPadOS 27, macOS Golden Gate 27. A malicious website may be able to determine what apps a user has installed."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "A malicious website may be able to determine what apps a user has installed",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:58.539Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149034"
},
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149039"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-84518",
"datePublished": "2026-09-14T20:51:58.539Z",
"dateReserved": "2026-09-01T21:13:17.749Z",
"dateUpdated": "2026-09-14T22:51:38.853Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-84631 (GCVE-0-2026-84631)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-15 03:56
VLAI
EPSS
VEX
Summary
This issue was addressed with additional entitlement checks. This issue is fixed in macOS Golden Gate 27. An app may be able to gain root privileges.
Severity
7.8 (High)
SSVC
Exploitation: none
Automatable: no
Technical Impact: total
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-14 00:00 UTC
CWE
- An app may be able to gain root privileges
- CWE-280 - Improper Handling of Insufficient Permissions or Privileges
Assigner
References
1 reference
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "HIGH",
"baseScore": 7.8,
"baseSeverity": "HIGH",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "LOW",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-84631",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-14T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-280",
"description": "CWE-280 Improper Handling of Insufficient Permissions or Privileges",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-15T03:56:20.777Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "This issue was addressed with additional entitlement checks. This issue is fixed in macOS Golden Gate 27. An app may be able to gain root privileges."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "An app may be able to gain root privileges",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:57.603Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149035"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-84631",
"datePublished": "2026-09-14T20:51:57.603Z",
"dateReserved": "2026-09-01T21:13:23.288Z",
"dateUpdated": "2026-09-15T03:56:20.777Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-84563 (GCVE-0-2026-84563)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-15 19:23
VLAI
EPSS
VEX
Summary
A logic issue was addressed with improved checks. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to cause unexpected system termination.
Severity
7.5 (High)
SSVC
Exploitation: none
Automatable: yes
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-15 19:23 UTC
CWE
- An app may be able to cause unexpected system termination
- CWE-843 - Access of Resource Using Incompatible Type ('Type Confusion')
Assigner
References
Impacted products
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "NETWORK",
"availabilityImpact": "NONE",
"baseScore": 7.5,
"baseSeverity": "HIGH",
"confidentialityImpact": "NONE",
"integrityImpact": "HIGH",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-84563",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "yes"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-15T19:23:03.350763Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-843",
"description": "CWE-843 Access of Resource Using Incompatible Type (\u0027Type Confusion\u0027)",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-15T19:23:06.853Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "A logic issue was addressed with improved checks. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to cause unexpected system termination."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "An app may be able to cause unexpected system termination",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:55.610Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149042"
},
{
"url": "https://support.apple.com/en-us/149043"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-84563",
"datePublished": "2026-09-14T20:51:55.610Z",
"dateReserved": "2026-09-01T21:13:17.754Z",
"dateUpdated": "2026-09-15T19:23:06.853Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-84534 (GCVE-0-2026-84534)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-15 19:25
VLAI
EPSS
VEX
Summary
A path handling issue was addressed with improved validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, visionOS 27. Extracting a maliciously crafted archive may allow an attacker to write arbitrary files.
Severity
5.5 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-15 19:25 UTC
CWE
- Extracting a maliciously crafted archive may allow an attacker to write arbitrary files
- CWE-22 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Assigner
References
Impacted products
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "NONE",
"baseScore": 5.5,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "NONE",
"integrityImpact": "HIGH",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "REQUIRED",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-84534",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-15T19:25:43.930477Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-22",
"description": "CWE-22 Improper Limitation of a Pathname to a Restricted Directory (\u0027Path Traversal\u0027)",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-15T19:25:48.116Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "iOS and iPadOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "visionOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "A path handling issue was addressed with improved validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, visionOS 27. Extracting a maliciously crafted archive may allow an attacker to write arbitrary files."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "Extracting a maliciously crafted archive may allow an attacker to write arbitrary files",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:54.673Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149034"
},
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149038"
},
{
"url": "https://support.apple.com/en-us/149041"
},
{
"url": "https://support.apple.com/en-us/149042"
},
{
"url": "https://support.apple.com/en-us/149043"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-84534",
"datePublished": "2026-09-14T20:51:54.673Z",
"dateReserved": "2026-09-01T21:13:17.750Z",
"dateUpdated": "2026-09-15T19:25:48.116Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-43690 (GCVE-0-2026-43690)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-17 14:59
VLAI
EPSS
VEX
Summary
A race condition was addressed with improved locking. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. A local user may be able to read kernel memory.
Severity
4.7 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-15 19:26 UTC
CWE
- A local user may be able to read kernel memory
- CWE-362 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Assigner
References
Impacted products
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "HIGH",
"attackVector": "LOCAL",
"availabilityImpact": "NONE",
"baseScore": 4.7,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "HIGH",
"integrityImpact": "NONE",
"privilegesRequired": "LOW",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-43690",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-15T19:26:52.831775Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-362",
"description": "CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization (\u0027Race Condition\u0027)",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-17T14:59:37.056Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "A race condition was addressed with improved locking. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. A local user may be able to read kernel memory."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "A local user may be able to read kernel memory",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:52.660Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149042"
},
{
"url": "https://support.apple.com/en-us/149043"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-43690",
"datePublished": "2026-09-14T20:51:52.660Z",
"dateReserved": "2026-05-01T22:46:21.642Z",
"dateUpdated": "2026-09-17T14:59:37.056Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-84522 (GCVE-0-2026-84522)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-17 14:14
VLAI
EPSS
VEX
Summary
A race condition was addressed with improved state management. This issue is fixed in macOS Golden Gate 27. An app may be able to access sensitive user data.
Severity
5.9 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-17 14:14 UTC
CWE
- An app may be able to access sensitive user data
- CWE-362 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Assigner
References
1 reference
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "HIGH",
"attackVector": "NETWORK",
"availabilityImpact": "NONE",
"baseScore": 5.9,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "HIGH",
"integrityImpact": "NONE",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-84522",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-17T14:14:13.130499Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-362",
"description": "CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization (\u0027Race Condition\u0027)",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-17T14:14:18.757Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "A race condition was addressed with improved state management. This issue is fixed in macOS Golden Gate 27. An app may be able to access sensitive user data."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "An app may be able to access sensitive user data",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:51.608Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149035"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-84522",
"datePublished": "2026-09-14T20:51:51.608Z",
"dateReserved": "2026-09-01T21:13:17.749Z",
"dateUpdated": "2026-09-17T14:14:18.757Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-86909 (GCVE-0-2026-86909)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-17 14:13
VLAI
EPSS
VEX
Summary
A logic issue was addressed with improved state management. This issue is fixed in macOS Golden Gate 27. An app may be able to bypass Gatekeeper checks.
Severity
4.4 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-17 14:12 UTC
CWE
- An app may be able to bypass Gatekeeper checks
- CWE-693 - Protection Mechanism Failure
Assigner
References
1 reference
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "NONE",
"baseScore": 4.4,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "LOW",
"integrityImpact": "LOW",
"privilegesRequired": "LOW",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-86909",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-17T14:12:58.982499Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-693",
"description": "CWE-693 Protection Mechanism Failure",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-17T14:13:03.077Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "A logic issue was addressed with improved state management. This issue is fixed in macOS Golden Gate 27. An app may be able to bypass Gatekeeper checks."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "An app may be able to bypass Gatekeeper checks",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:50.569Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149035"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-86909",
"datePublished": "2026-09-14T20:51:50.569Z",
"dateReserved": "2026-09-08T16:43:41.874Z",
"dateUpdated": "2026-09-17T14:13:03.077Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-43686 (GCVE-0-2026-43686)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-16 03:56
VLAI
EPSS
VEX
Summary
A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Connecting to a malicious NFS server may lead to kernel memory corruption.
Severity
8.8 (High)
SSVC
Exploitation: none
Automatable: no
Technical Impact: total
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-15 00:00 UTC
CWE
- Connecting to a malicious NFS server may lead to kernel memory corruption
- CWE-416 - Use After Free
Assigner
References
8 references
Impacted products
5 products
| Vendor | Product | Version | |
|---|---|---|---|
| Apple | iOS and iPadOS |
Affected:
0 , < 26.7
(custom)
Affected: 0 , < 27 (custom) |
|
| Apple | macOS |
Affected:
0 , < 15.8
(custom)
Affected: 0 , < 26.7 (custom) Affected: 0 , < 27 (custom) |
|
| Apple | tvOS |
Affected:
0 , < 27
(custom)
|
|
| Apple | visionOS |
Affected:
0 , < 27
(custom)
|
|
| Apple | watchOS |
Affected:
0 , < 27
(custom)
|
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "NETWORK",
"availabilityImpact": "HIGH",
"baseScore": 8.8,
"baseSeverity": "HIGH",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "REQUIRED",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-43686",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-15T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-416",
"description": "CWE-416 Use After Free",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-16T03:56:22.482Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "iOS and iPadOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "tvOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "visionOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "watchOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Connecting to a malicious NFS server may lead to kernel memory corruption."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "Connecting to a malicious NFS server may lead to kernel memory corruption",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:49.511Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149034"
},
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149036"
},
{
"url": "https://support.apple.com/en-us/149037"
},
{
"url": "https://support.apple.com/en-us/149038"
},
{
"url": "https://support.apple.com/en-us/149041"
},
{
"url": "https://support.apple.com/en-us/149042"
},
{
"url": "https://support.apple.com/en-us/149043"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-43686",
"datePublished": "2026-09-14T20:51:49.511Z",
"dateReserved": "2026-05-01T22:46:21.642Z",
"dateUpdated": "2026-09-16T03:56:22.482Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-84575 (GCVE-0-2026-84575)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-15 17:52
VLAI
EPSS
VEX
Summary
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted file may lead to unexpected app termination.
Severity
7.8 (High)
SSVC
Exploitation: none
Automatable: no
Technical Impact: total
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-15 17:50 UTC
CWE
- Processing a maliciously crafted file may lead to unexpected app termination
- CWE-787 - Out-of-bounds Write
Assigner
References
Impacted products
5 products
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "HIGH",
"baseScore": 7.8,
"baseSeverity": "HIGH",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "LOW",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-84575",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-15T17:50:43.434325Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-787",
"description": "CWE-787 Out-of-bounds Write",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-15T17:52:06.397Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "iOS and iPadOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "tvOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "visionOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "watchOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted file may lead to unexpected app termination."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "Processing a maliciously crafted file may lead to unexpected app termination",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:48.465Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149034"
},
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149036"
},
{
"url": "https://support.apple.com/en-us/149037"
},
{
"url": "https://support.apple.com/en-us/149038"
},
{
"url": "https://support.apple.com/en-us/149042"
},
{
"url": "https://support.apple.com/en-us/149043"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-84575",
"datePublished": "2026-09-14T20:51:48.465Z",
"dateReserved": "2026-09-01T21:13:17.756Z",
"dateUpdated": "2026-09-15T17:52:06.397Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-64756 (GCVE-0-2026-64756)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-15 18:00
VLAI
EPSS
VEX
Summary
A path handling issue was addressed with improved validation. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to access user-sensitive data.
Severity
5.5 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-15 17:58 UTC
CWE
- An app may be able to access user-sensitive data
- CWE-22 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Assigner
References
Impacted products
2 products
| Vendor | Product | Version | |
|---|---|---|---|
| Apple | iOS and iPadOS |
Affected:
0 , < 27
(custom)
|
|
| Apple | macOS |
Affected:
0 , < 15.8
(custom)
Affected: 0 , < 26.7 (custom) Affected: 0 , < 27 (custom) |
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "NONE",
"baseScore": 5.5,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "HIGH",
"integrityImpact": "NONE",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "REQUIRED",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-64756",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-15T17:58:23.670378Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-22",
"description": "CWE-22 Improper Limitation of a Pathname to a Restricted Directory (\u0027Path Traversal\u0027)",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-15T18:00:18.550Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "iOS and iPadOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "A path handling issue was addressed with improved validation. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to access user-sensitive data."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "An app may be able to access user-sensitive data",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:44.472Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149034"
},
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149042"
},
{
"url": "https://support.apple.com/en-us/149043"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-64756",
"datePublished": "2026-09-14T20:51:44.472Z",
"dateReserved": "2026-07-20T18:10:30.632Z",
"dateUpdated": "2026-09-15T18:00:18.550Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-65393 (GCVE-0-2026-65393)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-22 20:07
VLAI
EPSS
VEX
Summary
A permissions issue was addressed with improved validation. This issue is fixed in Xcode 27, macOS Golden Gate 27. An app may be able to access user-sensitive data.
Severity
5.5 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-15 18:01 UTC
CWE
- An app may be able to access user-sensitive data
- CWE-863 - Incorrect Authorization
Assigner
References
Impacted products
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "NONE",
"baseScore": 5.5,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "HIGH",
"integrityImpact": "NONE",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "REQUIRED",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-65393",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-15T18:01:31.031063Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-863",
"description": "CWE-863 Incorrect Authorization",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-15T18:02:34.819Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
},
{
"providerMetadata": {
"dateUpdated": "2026-09-22T20:07:27.256Z",
"orgId": "af854a3a-2127-422b-91ae-364da2661108",
"shortName": "CVE"
},
"references": [
{
"url": "http://seclists.org/fulldisclosure/2026/Sep/62"
}
],
"title": "CVE Program Container"
}
],
"cna": {
"affected": [
{
"product": "Xcode",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "A permissions issue was addressed with improved validation. This issue is fixed in Xcode 27, macOS Golden Gate 27. An app may be able to access user-sensitive data."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "An app may be able to access user-sensitive data",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:43.443Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149040"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-65393",
"datePublished": "2026-09-14T20:51:43.443Z",
"dateReserved": "2026-07-22T00:46:44.573Z",
"dateUpdated": "2026-09-22T20:07:27.256Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-65405 (GCVE-0-2026-65405)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-15 18:04
VLAI
EPSS
VEX
Summary
A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to determine kernel memory layout.
Severity
5.5 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-15 18:03 UTC
CWE
- An app may be able to determine kernel memory layout
- CWE-457 - Use of Uninitialized Variable
Assigner
References
8 references
Impacted products
5 products
| Vendor | Product | Version | |
|---|---|---|---|
| Apple | iOS and iPadOS |
Affected:
0 , < 26.7
(custom)
Affected: 0 , < 27 (custom) |
|
| Apple | macOS |
Affected:
0 , < 15.8
(custom)
Affected: 0 , < 26.7 (custom) Affected: 0 , < 27 (custom) |
|
| Apple | tvOS |
Affected:
0 , < 27
(custom)
|
|
| Apple | visionOS |
Affected:
0 , < 27
(custom)
|
|
| Apple | watchOS |
Affected:
0 , < 27
(custom)
|
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "NONE",
"baseScore": 5.5,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "HIGH",
"integrityImpact": "NONE",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "REQUIRED",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-65405",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-15T18:03:30.431901Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-457",
"description": "CWE-457 Use of Uninitialized Variable",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-15T18:04:26.297Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "iOS and iPadOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "tvOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "visionOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "watchOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to determine kernel memory layout."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "An app may be able to determine kernel memory layout",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:42.387Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149034"
},
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149036"
},
{
"url": "https://support.apple.com/en-us/149037"
},
{
"url": "https://support.apple.com/en-us/149038"
},
{
"url": "https://support.apple.com/en-us/149041"
},
{
"url": "https://support.apple.com/en-us/149042"
},
{
"url": "https://support.apple.com/en-us/149043"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-65405",
"datePublished": "2026-09-14T20:51:42.387Z",
"dateReserved": "2026-07-22T00:46:56.740Z",
"dateUpdated": "2026-09-15T18:04:26.297Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-64701 (GCVE-0-2026-64701)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-15 03:56
VLAI
EPSS
VEX
Summary
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.8, macOS Tahoe 26.6. A malicious app may be able to gain root privileges.
Severity
7.8 (High)
SSVC
Exploitation: none
Automatable: no
Technical Impact: total
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-14 00:00 UTC
CWE
- A malicious app may be able to gain root privileges
- CWE-280 - Improper Handling of Insufficient Permissions or Privileges
Assigner
References
2 references
Impacted products
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "HIGH",
"baseScore": 7.8,
"baseSeverity": "HIGH",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "LOW",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-64701",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-14T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-280",
"description": "CWE-280 Improper Handling of Insufficient Permissions or Privileges",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-15T03:56:21.874Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.7.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.6",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.8, macOS Tahoe 26.6. A malicious app may be able to gain root privileges."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "A malicious app may be able to gain root privileges",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:41.450Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/128067"
},
{
"url": "https://support.apple.com/en-us/128071"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-64701",
"datePublished": "2026-09-14T20:51:41.450Z",
"dateReserved": "2026-07-20T18:09:24.049Z",
"dateUpdated": "2026-09-15T03:56:21.874Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-84555 (GCVE-0-2026-84555)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-15 18:06
VLAI
EPSS
VEX
Summary
An authorization issue was addressed with improved access control. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8. An app may be able to access sensitive user data.
Severity
5.5 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-15 18:05 UTC
CWE
- An app may be able to access sensitive user data
- CWE-284 - Improper Access Control
Assigner
References
2 references
Impacted products
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "NONE",
"baseScore": 5.5,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "HIGH",
"integrityImpact": "NONE",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "REQUIRED",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-84555",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-15T18:05:26.822520Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-284",
"description": "CWE-284 Improper Access Control",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-15T18:06:10.086Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "An authorization issue was addressed with improved access control. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8. An app may be able to access sensitive user data."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "An app may be able to access sensitive user data",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:40.404Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149043"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-84555",
"datePublished": "2026-09-14T20:51:40.404Z",
"dateReserved": "2026-09-01T21:13:17.753Z",
"dateUpdated": "2026-09-15T18:06:10.086Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-65413 (GCVE-0-2026-65413)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-15 18:07
VLAI
EPSS
VEX
Summary
An integer overflow was addressed with improved input validation. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to cause a denial of service.
Severity
5.5 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-15 18:06 UTC
CWE
- An app may be able to cause a denial of service
- CWE-190 - Integer Overflow or Wraparound
Assigner
References
Impacted products
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "NONE",
"baseScore": 5.5,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "HIGH",
"integrityImpact": "NONE",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "REQUIRED",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-65413",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-15T18:06:42.798504Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-190",
"description": "CWE-190 Integer Overflow or Wraparound",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-15T18:07:37.320Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "An integer overflow was addressed with improved input validation. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to cause a denial of service."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "An app may be able to cause a denial of service",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:39.348Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149042"
},
{
"url": "https://support.apple.com/en-us/149043"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-65413",
"datePublished": "2026-09-14T20:51:39.348Z",
"dateReserved": "2026-07-22T00:47:18.621Z",
"dateUpdated": "2026-09-15T18:07:37.320Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-64717 (GCVE-0-2026-64717)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-15 18:10
VLAI
EPSS
VEX
Summary
A race condition was addressed with improved state handling. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to cause unexpected system termination or corrupt kernel memory.
Severity
6.3 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-15 18:09 UTC
CWE
- An app may be able to cause unexpected system termination or corrupt kernel memory
- CWE-362 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Assigner
References
Impacted products
5 products
| Vendor | Product | Version | |
|---|---|---|---|
| Apple | iOS and iPadOS |
Affected:
0 , < 18.7.10
(custom)
Affected: 0 , < 26.6 (custom) |
|
| Apple | macOS |
Affected:
0 , < 15.7.8
(custom)
Affected: 0 , < 26.6 (custom) |
|
| Apple | tvOS |
Affected:
0 , < 26.6
(custom)
|
|
| Apple | visionOS |
Affected:
0 , < 26.6
(custom)
|
|
| Apple | watchOS |
Affected:
0 , < 26.6
(custom)
|
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "HIGH",
"attackVector": "LOCAL",
"availabilityImpact": "HIGH",
"baseScore": 6.3,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "NONE",
"integrityImpact": "HIGH",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "REQUIRED",
"vectorString": "CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:H",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-64717",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-15T18:09:28.155082Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-362",
"description": "CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization (\u0027Race Condition\u0027)",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-15T18:10:08.155Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "iOS and iPadOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "18.7.10",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.6",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.7.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.6",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "tvOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "26.6",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "visionOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "26.6",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "watchOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "26.6",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "A race condition was addressed with improved state handling. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to cause unexpected system termination or corrupt kernel memory."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "An app may be able to cause unexpected system termination or corrupt kernel memory",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:38.304Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/128066"
},
{
"url": "https://support.apple.com/en-us/128067"
},
{
"url": "https://support.apple.com/en-us/128068"
},
{
"url": "https://support.apple.com/en-us/128069"
},
{
"url": "https://support.apple.com/en-us/128070"
},
{
"url": "https://support.apple.com/en-us/128071"
},
{
"url": "https://support.apple.com/en-us/148287"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-64717",
"datePublished": "2026-09-14T20:51:38.304Z",
"dateReserved": "2026-07-20T18:09:35.084Z",
"dateUpdated": "2026-09-15T18:10:08.155Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-84543 (GCVE-0-2026-84543)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-15 18:13
VLAI
EPSS
VEX
Summary
An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. Connecting to a malicious SMB server may cause unexpected system termination or corrupt kernel memory.
Severity
7.5 (High)
SSVC
Exploitation: none
Automatable: yes
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-15 18:12 UTC
CWE
- Connecting to a malicious SMB server may cause unexpected system termination or corrupt kernel memory
- CWE-125 - Out-of-bounds Read
Assigner
References
Impacted products
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "NETWORK",
"availabilityImpact": "NONE",
"baseScore": 7.5,
"baseSeverity": "HIGH",
"confidentialityImpact": "NONE",
"integrityImpact": "HIGH",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-84543",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "yes"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-15T18:12:24.680753Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-125",
"description": "CWE-125 Out-of-bounds Read",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-15T18:13:49.090Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. Connecting to a malicious SMB server may cause unexpected system termination or corrupt kernel memory."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "Connecting to a malicious SMB server may cause unexpected system termination or corrupt kernel memory",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:37.259Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149042"
},
{
"url": "https://support.apple.com/en-us/149043"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-84543",
"datePublished": "2026-09-14T20:51:37.259Z",
"dateReserved": "2026-09-01T21:13:17.751Z",
"dateUpdated": "2026-09-15T18:13:49.090Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-84514 (GCVE-0-2026-84514)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-17 14:15
VLAI
EPSS
VEX
Summary
This issue was addressed with additional entitlement checks. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to modify protected parts of the file system.
Severity
5.5 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-17 14:15 UTC
CWE
- An app may be able to modify protected parts of the file system
- CWE-862 - Missing Authorization
Assigner
References
Impacted products
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "NONE",
"baseScore": 5.5,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "NONE",
"integrityImpact": "HIGH",
"privilegesRequired": "LOW",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-84514",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-17T14:15:18.886098Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-862",
"description": "CWE-862 Missing Authorization",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-17T14:15:32.296Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "This issue was addressed with additional entitlement checks. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to modify protected parts of the file system."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "An app may be able to modify protected parts of the file system",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:35.265Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149042"
},
{
"url": "https://support.apple.com/en-us/149043"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-84514",
"datePublished": "2026-09-14T20:51:35.265Z",
"dateReserved": "2026-09-01T21:13:17.748Z",
"dateUpdated": "2026-09-17T14:15:32.296Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-43761 (GCVE-0-2026-43761)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-15 14:34
VLAI
EPSS
VEX
Summary
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. Mounting a malicious disk image may cause unexpected system termination.
Severity
6.5 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-15 14:34 UTC
CWE
- Mounting a malicious disk image may cause unexpected system termination
- CWE-787 - Out-of-bounds Write
Assigner
References
Impacted products
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "NETWORK",
"availabilityImpact": "HIGH",
"baseScore": 6.5,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"privilegesRequired": "NONE",
"scope": "UNCHANGED",
"userInteraction": "REQUIRED",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-43761",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-15T14:34:14.849776Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-787",
"description": "CWE-787 Out-of-bounds Write",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-15T14:34:17.464Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "14.8.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "15.7.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.6",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. Mounting a malicious disk image may cause unexpected system termination."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "Mounting a malicious disk image may cause unexpected system termination",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:33.262Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/128067"
},
{
"url": "https://support.apple.com/en-us/128071"
},
{
"url": "https://support.apple.com/en-us/128072"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-43761",
"datePublished": "2026-09-14T20:51:33.262Z",
"dateReserved": "2026-05-01T22:46:27.817Z",
"dateUpdated": "2026-09-15T14:34:17.464Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-84580 (GCVE-0-2026-84580)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-17 14:32
VLAI
EPSS
VEX
Summary
The issue was addressed with improved checks. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to break out of its sandbox.
Severity
8.4 (High)
SSVC
Exploitation: none
Automatable: no
Technical Impact: total
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-17 14:32 UTC
CWE
- An app may be able to break out of its sandbox
- CWE-862 - Missing Authorization
Assigner
References
Impacted products
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "NONE",
"baseScore": 8.4,
"baseSeverity": "HIGH",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "LOW",
"scope": "CHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-84580",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-17T14:32:34.854595Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-862",
"description": "CWE-862 Missing Authorization",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-17T14:32:48.207Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "The issue was addressed with improved checks. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to break out of its sandbox."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "An app may be able to break out of its sandbox",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:32.211Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149042"
},
{
"url": "https://support.apple.com/en-us/149043"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-84580",
"datePublished": "2026-09-14T20:51:32.211Z",
"dateReserved": "2026-09-01T21:13:17.756Z",
"dateUpdated": "2026-09-17T14:32:48.207Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-84611 (GCVE-0-2026-84611)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-16 03:56
VLAI
EPSS
VEX
Summary
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted 3D model may lead to memory corruption.
Severity
7.3 (High)
SSVC
Exploitation: none
Automatable: no
Technical Impact: total
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-15 00:00 UTC
CWE
- Processing a maliciously crafted 3D model may lead to memory corruption
- CWE-787 - Out-of-bounds Write
Assigner
References
8 references
Impacted products
5 products
| Vendor | Product | Version | |
|---|---|---|---|
| Apple | iOS and iPadOS |
Affected:
0 , < 26.7
(custom)
Affected: 0 , < 27 (custom) |
|
| Apple | macOS |
Affected:
0 , < 15.8
(custom)
Affected: 0 , < 26.7 (custom) Affected: 0 , < 27 (custom) |
|
| Apple | tvOS |
Affected:
0 , < 27
(custom)
|
|
| Apple | visionOS |
Affected:
0 , < 27
(custom)
|
|
| Apple | watchOS |
Affected:
0 , < 27
(custom)
|
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "LOCAL",
"availabilityImpact": "HIGH",
"baseScore": 7.3,
"baseSeverity": "HIGH",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "LOW",
"scope": "UNCHANGED",
"userInteraction": "REQUIRED",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-84611",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-15T00:00:00+00:00",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-787",
"description": "CWE-787 Out-of-bounds Write",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-16T03:56:23.631Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "iOS and iPadOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "tvOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "visionOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "watchOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted 3D model may lead to memory corruption."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "Processing a maliciously crafted 3D model may lead to memory corruption",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:31.186Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149034"
},
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149036"
},
{
"url": "https://support.apple.com/en-us/149037"
},
{
"url": "https://support.apple.com/en-us/149038"
},
{
"url": "https://support.apple.com/en-us/149041"
},
{
"url": "https://support.apple.com/en-us/149042"
},
{
"url": "https://support.apple.com/en-us/149043"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-84611",
"datePublished": "2026-09-14T20:51:31.186Z",
"dateReserved": "2026-09-01T21:13:23.285Z",
"dateUpdated": "2026-09-16T03:56:23.631Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}
CVE-2026-84492 (GCVE-0-2026-84492)
Vulnerability from cvelistv5 – Published: 2026-09-14 20:51 – Updated: 2026-09-15 14:37
VLAI
EPSS
VEX
Summary
A race condition was addressed with improved state handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause unexpected system termination.
Severity
4.7 (Medium)
SSVC
Exploitation: none
Automatable: no
Technical Impact: partial
CISA Coordinator · CISA-ADP (v2.0.3)
Decision recorded 2026-09-15 14:37 UTC
CWE
- An app may be able to cause unexpected system termination
- CWE-362 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Assigner
References
8 references
Impacted products
5 products
| Vendor | Product | Version | |
|---|---|---|---|
| Apple | iOS and iPadOS |
Affected:
0 , < 26.7
(custom)
Affected: 0 , < 27 (custom) |
|
| Apple | macOS |
Affected:
0 , < 15.8
(custom)
Affected: 0 , < 26.7 (custom) Affected: 0 , < 27 (custom) |
|
| Apple | tvOS |
Affected:
0 , < 27
(custom)
|
|
| Apple | visionOS |
Affected:
0 , < 27
(custom)
|
|
| Apple | watchOS |
Affected:
0 , < 27
(custom)
|
{
"containers": {
"adp": [
{
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "HIGH",
"attackVector": "LOCAL",
"availabilityImpact": "HIGH",
"baseScore": 4.7,
"baseSeverity": "MEDIUM",
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"privilegesRequired": "LOW",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H",
"version": "3.1"
}
},
{
"other": {
"content": {
"id": "CVE-2026-84492",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"timestamp": "2026-09-15T14:37:17.672496Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-362",
"description": "CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization (\u0027Race Condition\u0027)",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-15T14:37:20.013Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"product": "iOS and iPadOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "macOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "15.8",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "26.7",
"status": "affected",
"version": "0",
"versionType": "custom"
},
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "tvOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "visionOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
},
{
"product": "watchOS",
"vendor": "Apple",
"versions": [
{
"lessThan": "27",
"status": "affected",
"version": "0",
"versionType": "custom"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "A race condition was addressed with improved state handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause unexpected system termination."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "An app may be able to cause unexpected system termination",
"lang": "en"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2026-09-14T20:51:30.118Z",
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple"
},
"references": [
{
"url": "https://support.apple.com/en-us/149034"
},
{
"url": "https://support.apple.com/en-us/149035"
},
{
"url": "https://support.apple.com/en-us/149036"
},
{
"url": "https://support.apple.com/en-us/149037"
},
{
"url": "https://support.apple.com/en-us/149038"
},
{
"url": "https://support.apple.com/en-us/149041"
},
{
"url": "https://support.apple.com/en-us/149042"
},
{
"url": "https://support.apple.com/en-us/149043"
}
]
}
},
"cveMetadata": {
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"cveId": "CVE-2026-84492",
"datePublished": "2026-09-14T20:51:30.118Z",
"dateReserved": "2026-09-01T20:50:08.321Z",
"dateUpdated": "2026-09-15T14:37:20.013Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.2"
}