Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
5.3 MEDIUM
CVE-2026-20682 — Apple Notes Note Deletion Logic Flaw

A logic issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, iOS 18.7.5 and iPadOS 18.7.5. An attacker may be able to discover a user’s deleted notes.

iphone_os ipados | Remote | Information Disclosure
Feb 11, 2026 Feb 17, 2026
Feb 11, 2026
Feb 17, 2026
3.3 LOW
CVE-2026-20681 — Apple macOS Contact Data Disclosure

A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Tahoe 26.3. An app may be able to access information about a user's contacts.

macos | Information Disclosure
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
6.5 MEDIUM
CVE-2026-20680 — Apple macOS and iOS Sensitive Data Access Vulnerability

The issue was addressed with additional restrictions on the observability of app states. This issue is fixed in macOS Tahoe 26.3, macOS Sonoma 14.8.4, macOS Sequoia 15.7.4, iOS 18.7.5 and iPadOS 18.7…

macos iphone_os ipados | Information Disclosure
Feb 11, 2026 Feb 18, 2026
Feb 11, 2026
Feb 18, 2026
5.5 MEDIUM
CVE-2026-20678 — Apple iOS/ iPadOS Authorization Bypass

An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, iOS 18.7.5 and iPadOS 18.7.5. An app may be able to access sensitive user data.

iphone_os ipados | Authorization
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
9.0 CRITICAL
CVE-2026-20677 — Apple macOS and iOS Symbolic Link Sandbox Bypass Vulnerability

A race condition was addressed with improved handling of symbolic links. This issue is fixed in macOS Tahoe 26.3, macOS Sonoma 14.8.4, iOS 18.7.5 and iPadOS 18.7.5, visionOS 26.3, iOS 26.3 and iPadOS…

macos iphone_os ipados visionos | Remote | Race Condition
Feb 11, 2026 Feb 17, 2026
Feb 11, 2026
Feb 17, 2026
5.3 MEDIUM
CVE-2026-20676 — Apple Safari Safari Cross-Site Tracking Vulnerability

This issue was addressed through improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, Safari 26.3, macOS Tahoe 26.3, visionOS 26.3. A website may be able to track users through…

macos iphone_os safari ipados visionos | Remote | Misconfiguration
Feb 11, 2026 Feb 17, 2026
Feb 11, 2026
Feb 17, 2026
5.5 MEDIUM
CVE-2026-20675 — Apple Image Processing Vulnerability - Information Disclosure

The issue was addressed with improved bounds checks. This issue is fixed in watchOS 26.3, tvOS 26.3, macOS Tahoe 26.3, macOS Sonoma 14.8.4, macOS Sequoia 15.7.4, iOS 18.7.5 and iPadOS 18.7.5, visionO…

macos iphone_os tvos watchos ipados visionos | Information Disclosure
Feb 11, 2026 Feb 17, 2026
Feb 11, 2026
Feb 17, 2026
4.6 MEDIUM
CVE-2026-20674 — Apple iOS/PadOS Sensitive Data Disclosure

A privacy issue was addressed by removing sensitive data. This issue is fixed in iOS 26.3 and iPadOS 26.3. An attacker with physical access to a locked device may be able to view sensitive user infor…

iphone_os ipados | Information Disclosure
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
5.3 MEDIUM
CVE-2026-20673 — Apple Mail Preview Remote Content Loading Logic Flaw

A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.4, iOS 18.7.5 and iPadOS 18.7.5, macOS Tahoe 26.3, macOS Sonoma 14.8.4. Turning off "Load remote content in…

macos iphone_os ipados | Remote | Authorization
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
3.1 LOW
CVE-2026-20671 — Apple Network Traffic Interception Vulnerability

A logic issue was addressed with improved checks. This issue is fixed in watchOS 26.3, tvOS 26.3, macOS Tahoe 26.3, macOS Sonoma 14.8.4, macOS Sequoia 15.7.4, iOS 18.7.5 and iPadOS 18.7.5, visionOS 2…

macos iphone_os tvos watchos ipados visionos | Remote | Misconfiguration
Feb 11, 2026 Feb 17, 2026
Feb 11, 2026
Feb 17, 2026
5.5 MEDIUM
CVE-2026-20669 — Apple macOS Directory Path Parsing Vulnerability

A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in macOS Tahoe 26.3. An app may be able to access sensitive user data.

macos | Path Traversal
Feb 11, 2026 Feb 12, 2026
Feb 11, 2026
Feb 12, 2026
8.8 HIGH
CVE-2026-20667 — Apple iOS/WatchOS Sandbox Escape Vulnerability

A logic issue was addressed with improved checks. This issue is fixed in watchOS 26.3, macOS Tahoe 26.3, macOS Sonoma 14.8.4, macOS Sequoia 15.7.4, iOS 26.3 and iPadOS 26.3. An app may be able to bre…

macos iphone_os watchos ipados | Authorization
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
5.5 MEDIUM
CVE-2026-20666 — Apple macOS Tahoe Authorization Bypass

An authorization issue was addressed with improved state management. This issue is fixed in macOS Tahoe 26.3. An app may be able to access sensitive user data.

macos | Authorization
Feb 11, 2026 Feb 12, 2026
Feb 11, 2026
Feb 12, 2026
3.3 LOW
CVE-2026-20663 — Apple iOS/ iPadOS Information Disclosure Vulnerability

The issue was resolved by sanitizing logging. This issue is fixed in iOS 26.3 and iPadOS 26.3, iOS 18.7.5 and iPadOS 18.7.5. An app may be able to enumerate a user's installed apps.

iphone_os ipados | Information Disclosure
Feb 11, 2026 Feb 12, 2026
Feb 11, 2026
Feb 12, 2026
4.6 MEDIUM
CVE-2026-20662 — Apple macOS Lock Screen Information Disclosure Vulnerability

An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.4, macOS Tahoe 26.3. An attacker with physical access to a locked device may be able to …

macos | Authorization
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
4.6 MEDIUM
CVE-2026-20661 — Apple iOS/ iPadOS Authorization Bypass

An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, iOS 18.7.5 and iPadOS 18.7.5. An attacker with physical access to a locked device…

iphone_os ipados | Authorization
Feb 11, 2026 Feb 18, 2026
Feb 11, 2026
Feb 18, 2026
7.5 HIGH
CVE-2026-20660 — Apple Path Handling Vulnerability - Arbitrary File Writing

A path handling issue was addressed with improved logic. This issue is fixed in macOS Tahoe 26.3, macOS Sonoma 14.8.4, iOS 18.7.5 and iPadOS 18.7.5, visionOS 26.3, iOS 26.3 and iPadOS 26.3, Safari 26…

macos iphone_os safari ipados visionos | Remote | Path Traversal
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
7.8 HIGH
CVE-2026-20658 — macOS Tahoe Root Privilege Escalation

A package validation issue was addressed by blocking the vulnerable package. This issue is fixed in macOS Tahoe 26.3. An app may be able to gain root privileges.

macos | Authorization
Feb 11, 2026 Feb 25, 2026
Feb 11, 2026
Feb 25, 2026
3.3 LOW
CVE-2026-20656 — Apple Safari Safari History Access Vulnerability

A logic issue was addressed with improved validation. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, Safari 26.3, macOS Tahoe 26.3. An app may be able to access a user's Safari history.

macos iphone_os safari ipados | Information Disclosure
Feb 11, 2026 Feb 18, 2026
Feb 11, 2026
Feb 18, 2026
5.5 MEDIUM
CVE-2026-20655 — Apple iOS/ iPadOS Lockscreen Information Disclosure Vulnerability

An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, iOS 18.7.5 and iPadOS 18.7.5. An attacker with physical access to a locked device…

iphone_os ipados | Authorization
Feb 11, 2026 Feb 18, 2026
Feb 11, 2026
Feb 18, 2026
Showing 20 of 5067 Results