Vulnerabilities

Summary — last 7 days

New vulnerabilities3,338▲ 363 vs. last week
Critical / high1,493▲ 135 vs. last week
New active exploitation (KEV)7▼ 3 vs. last week
Unscored (no CVSS)592▲ 119 vs. last week
–

2,194 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
AnalyzedMedium (6.5)0.37%—Apple SafariApple IpadosApple Iphone OSApple Macos+39/14/20269/18/2026
A logic issue was addressed with improved state management. This issue is fixed in Safari 27, iOS 27 and iPadOS 27, macOS Golden Gate 27, tvOS 27, visionOS 27, watchOS 27. Processing maliciously crafted web content may lead to an unexpected process termination.
AnalyzedHigh (7.3)0.17%—Apple IpadosApple Iphone OSApple MacosApple Tvos+29/14/20269/16/2026
The issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted 3D model may lead to memory corruption.
AnalyzedMedium (4.7)0.11%—Apple IpadosApple Iphone OSApple MacosApple Tvos+29/14/20269/16/2026
A race condition was addressed with improved state handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause unexpected system termination.
AnalyzedHigh (7.5)0.42%—Apple IpadosApple Iphone OSApple TvosApple Visionos+19/14/20269/16/2026
This issue was addressed with additional entitlement checks. This issue is fixed in iOS 27 and iPadOS 27, tvOS 27, visionOS 27, watchOS 27. An app may be able to fingerprint the user.
AnalyzedMedium (5.5)0.15%—Apple IpadosApple Iphone OSApple MacosApple Tvos+29/14/20269/23/2026
An authorization issue was addressed with improved state management. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, tvOS 27, visionOS 27, watchOS 27. A sandboxed app may be able to access the System Keychain.
AnalyzedLow (3.3)0.15%—Apple IpadosApple Iphone OSApple MacosApple Tvos+29/14/20269/18/2026
An information disclosure issue was addressed with improved state management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to identify what other apps a user has installed.
AnalyzedCritical (9.1)0.47%—Apple IpadosApple Iphone OSApple MacosApple Visionos+19/14/20269/23/2026
A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, visionOS 27, watchOS 27. An app may be able to fingerprint the user.
AnalyzedMedium (5.5)0.18%—Apple IpadosApple Iphone OSApple MacosApple Visionos9/14/20269/23/2026
A permissions issue was addressed with improved path validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, visionOS 27. A sandboxed app may be able to access restricted files.
AnalyzedHigh (7.5)0.34%—Apple IpadosApple Iphone OS9/14/20269/23/2026
An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27. An app may be able to fingerprint the device.
AnalyzedMedium (6.2)0.18%—Apple IpadosApple Iphone OSApple MacosApple Tvos+29/14/20269/18/2026
A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app with root privileges may be able to read uninitialized kernel memory.
AnalyzedMedium (5.5)0.15%—Apple IpadosApple Iphone OSApple Macos9/14/20269/23/2026
An authorization issue was addressed with improved access control. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to access sensitive user data.
AnalyzedHigh (7.3)0.17%—Apple IpadosApple Iphone OSApple MacosApple Tvos+29/14/20269/18/2026
An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted 3D model may lead to memory corruption.
AnalyzedMedium (5.5)0.14%—Apple IpadosApple Iphone OSApple MacosApple Tvos9/14/20269/16/2026
An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27. An app may be able to access sensitive user data.
AnalyzedMedium (5.5)0.15%—Apple IpadosApple Iphone OSApple MacosApple Tvos+29/14/20269/18/2026
A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause unexpected system termination.
AnalyzedMedium (5.5)0.15%—Apple IpadosApple Iphone OSApple TvosApple Visionos9/14/20269/18/2026
An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, tvOS 27, visionOS 27. An app may be able to access sensitive user data.
AnalyzedMedium (5.5)0.15%—Apple IpadosApple Iphone OSApple MacosApple Tvos+29/14/20269/16/2026
An authorization issue was addressed with improved access control. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to read persistent device identifiers.
AnalyzedHigh (7.3)0.17%—Apple IpadosApple Iphone OSApple MacosApple Tvos+29/14/20269/16/2026
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted 3D model may lead to memory corruption.
AnalyzedCritical (9.8)0.66%—Apple IpadosApple Iphone OSApple MacosApple Tvos+29/14/20269/18/2026
A permissions issue was addressed with improved path validation. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to modify protected system files.
AnalyzedHigh (7.8)0.12%—Apple IpadosApple Iphone OSApple MacosApple Tvos+29/14/20269/16/2026
A race condition was addressed with improved state management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. A sandboxed app may be able to execute arbitrary code with kernel privileges.
AnalyzedHigh (7.5)0.41%—Apple IpadosApple Iphone OSApple MacosApple Visionos9/14/20269/17/2026
A privacy issue was addressed with improved handling of identifiers. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, visionOS 27. An app may be able to identify a user across reinstalls.
AnalyzedMedium (5.5)0.15%—Apple IpadosApple Iphone OSApple VisionosApple Watchos9/14/20269/17/2026
A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 27 and iPadOS 27, visionOS 27, watchOS 27. An app may be able to access sensitive user data.
AnalyzedMedium (5.5)0.16%—Apple IpadosApple Iphone OSApple MacosApple Tvos+29/14/20269/18/2026
A type confusion issue was addressed with improved checks. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause unexpected system termination.
AnalyzedMedium (5.4)0.29%—Apple IpadosApple Iphone OSApple MacosApple Tvos+29/14/20269/18/2026
An authorization issue was addressed with improved state management. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, tvOS 27, visionOS 27, watchOS 27. A malicious shortcut may be able to send messages without user confirmation.
AnalyzedHigh (7.5)0.50%—Apple IpadosApple Iphone OS9/14/20269/16/2026
A path traversal issue was addressed with improved path validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27. An attacker with physical access to a trust-paired device may be able to read and write arbitrary files.
AnalyzedMedium (6.5)0.41%—Apple IpadosApple Iphone OSApple MacosApple Tvos+29/14/20269/16/2026
An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted font may result in the disclosure of process memory.