Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
4.6 MEDIUM
CVE-2026-20661 — Apple iOS/ iPadOS Authorization Bypass

An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, iOS 18.7.5 and iPadOS 18.7.5. An attacker with physical access to a locked device…

iphone_os ipados | Authorization
Feb 11, 2026 Feb 18, 2026
Feb 11, 2026
Feb 18, 2026
7.5 HIGH
CVE-2026-20660 — Apple Path Handling Vulnerability - Arbitrary File Writing

A path handling issue was addressed with improved logic. This issue is fixed in macOS Tahoe 26.3, macOS Sonoma 14.8.4, iOS 18.7.5 and iPadOS 18.7.5, visionOS 26.3, iOS 26.3 and iPadOS 26.3, Safari 26…

macos iphone_os safari ipados visionos | Remote | Path Traversal
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
7.8 HIGH
CVE-2026-20658 — macOS Tahoe Root Privilege Escalation

A package validation issue was addressed by blocking the vulnerable package. This issue is fixed in macOS Tahoe 26.3. An app may be able to gain root privileges.

macos | Authorization
Feb 11, 2026 Feb 25, 2026
Feb 11, 2026
Feb 25, 2026
3.3 LOW
CVE-2026-20656 — Apple Safari Safari History Access Vulnerability

A logic issue was addressed with improved validation. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, Safari 26.3, macOS Tahoe 26.3. An app may be able to access a user's Safari history.

macos iphone_os safari ipados | Information Disclosure
Feb 11, 2026 Feb 18, 2026
Feb 11, 2026
Feb 18, 2026
5.5 MEDIUM
CVE-2026-20655 — Apple iOS/ iPadOS Lockscreen Information Disclosure Vulnerability

An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, iOS 18.7.5 and iPadOS 18.7.5. An attacker with physical access to a locked device…

iphone_os ipados | Authorization
Feb 11, 2026 Feb 18, 2026
Feb 11, 2026
Feb 18, 2026
5.5 MEDIUM
CVE-2026-20654 — Apple WatchOS Memory Corruption Denial of Service

The issue was addressed with improved memory handling. This issue is fixed in watchOS 26.3, tvOS 26.3, macOS Tahoe 26.3, visionOS 26.3, iOS 26.3 and iPadOS 26.3. An app may be able to cause unexpecte…

macos iphone_os tvos watchos ipados visionos | Memory Corruption
Feb 11, 2026 Feb 18, 2026
Feb 11, 2026
Feb 18, 2026
5.5 MEDIUM
CVE-2026-20653 — Apple Directory Path Parsing Vulnerability (Path Traversal)

A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in macOS Tahoe 26.3, macOS Sonoma 14.8.4, macOS Sequoia 15.7.4, iOS 18.7.5 and iPad…

macos iphone_os ipados visionos | Path Traversal
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
7.5 HIGH
CVE-2026-20652 — Apple Safari Denial-of-Service

The issue was addressed with improved memory handling. This issue is fixed in macOS Tahoe 26.3, iOS 18.7.5 and iPadOS 18.7.5, visionOS 26.3, iOS 26.3 and iPadOS 26.3, Safari 26.3. A remote attacker m…

macos iphone_os safari ipados visionos | Remote | Memory Corruption
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
7.5 HIGH
CVE-2026-20650 — Apple Bluetooth Denial-of-Service Vulnerability

A denial-of-service issue was addressed with improved validation. This issue is fixed in watchOS 26.3, tvOS 26.3, macOS Tahoe 26.3, visionOS 26.3, iOS 26.3 and iPadOS 26.3. An attacker in a privilege…

macos iphone_os tvos watchos ipados visionos | Remote | Denial of Service
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
7.5 HIGH
CVE-2026-20649 — Apple WatchOS Sensitive User Information Disclosure

A logging issue was addressed with improved data redaction. This issue is fixed in watchOS 26.3, iOS 26.3 and iPadOS 26.3, tvOS 26.3, macOS Tahoe 26.3. A user may be able to view sensitive user infor…

macos iphone_os tvos watchos ipados | Remote | Information Disclosure
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
5.5 MEDIUM
CVE-2026-20648 — "iCloud Notification Data Exposure Vulnerability in macOS"

A privacy issue was addressed by moving sensitive data to a protected location. This issue is fixed in macOS Tahoe 26.3. A malicious app may be able to access notifications from other iCloud devices.

macos | Information Disclosure
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
5.5 MEDIUM
CVE-2026-20647 — MacOS App Sensitive Data Access

This issue was addressed with improved data protection. This issue is fixed in macOS Tahoe 26.3. An app may be able to access sensitive user data.

macos | Information Disclosure
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
3.3 LOW
CVE-2026-20646 — Apple macOS Location Information Disclosure Vulnerability

A logging issue was addressed with improved data redaction. This issue is fixed in macOS Tahoe 26.3. A malicious app may be able to read sensitive location information.

macos | Information Disclosure
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
4.6 MEDIUM
CVE-2026-20645 — Apple iOS/PadOS UI State Management Inconsistent Physical Access Information Disclosure

An inconsistent user interface issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, iOS 18.7.5 and iPadOS 18.7.5. An attacker with physical access to a…

iphone_os ipados | Information Disclosure
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
6.5 MEDIUM
CVE-2026-20644 — Apple Safari Web Content Processing Crash

The issue was addressed with improved memory handling. This issue is fixed in macOS Tahoe 26.3, iOS 18.7.5 and iPadOS 18.7.5, visionOS 26.3, iOS 26.3 and iPadOS 26.3, Safari 26.3. Processing maliciou…

macos iphone_os safari ipados visionos | Remote | Memory Corruption
Feb 11, 2026 Feb 12, 2026
Feb 11, 2026
Feb 12, 2026
2.4 LOW
CVE-2026-20642 — Apple iOS Lock Screen Photo Access Vulnerability

An input validation issue was addressed. This issue is fixed in iOS 26.3 and iPadOS 26.3. A person with physical access to an iOS device may be able to access photos from the lock screen.

iphone_os ipados | Authorization
Feb 11, 2026 Feb 18, 2026
Feb 11, 2026
Feb 18, 2026
7.1 HIGH
CVE-2026-20641 — Apple iOS/WatchOS/TVOS/PadOS App Installation Disclosure Vulnerability

A privacy issue was addressed with improved checks. This issue is fixed in watchOS 26.3, tvOS 26.3, macOS Tahoe 26.3, macOS Sonoma 14.8.4, macOS Sequoia 15.7.4, iOS 18.7.5 and iPadOS 18.7.5, visionOS…

macos iphone_os tvos watchos ipados visionos | Information Disclosure
Feb 11, 2026 Feb 17, 2026
Feb 11, 2026
Feb 17, 2026
4.6 MEDIUM
CVE-2026-20640 — Apple iOS iPhone Mirroring Sensitive Data Disclosure

An inconsistent user interface issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3. An attacker with physical access to iPhone may be able to take and …

iphone_os ipados | Information Disclosure
Feb 11, 2026 Feb 17, 2026
Feb 11, 2026
Feb 17, 2026
5.5 MEDIUM
CVE-2026-20638 — Apple iOS Information Disclosure

A logic issue was addressed with improved checks. This issue is fixed in iOS 26.3 and iPadOS 26.3. A user with Live Caller ID app extensions turned off could have identifying information leaked to th…

iphone_os ipados | Information Disclosure
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
6.5 MEDIUM
CVE-2026-20636 — Apple Safari Web Content Crash Vulnerability

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.3 and iPadOS 26.3, Safari 26.3, macOS Tahoe 26.3, visionOS 26.3. Processing maliciously crafted web content may le…

macos iphone_os safari ipados visionos | Remote | Memory Corruption
Feb 11, 2026 Feb 17, 2026
Feb 11, 2026
Feb 17, 2026
Showing 20 of 5071 Results