DIRAS TAKE
Urgently install the vendor updates: Apple fixed the issue in version 27 across affected platforms, so apply those updates promptly to remove the vulnerability.
What is CVE-2026-84625?
An app can fingerprint users on affected Apple platforms, allowing user-identifying data to be collected; this is tracked as CVE-2026-84625. The issue affects builds before 27 for iOS and iPadOS (also macOS, visionOS, and watchOS before 27) and was fixed in the vendor's 27 releases. An attacker needs to run or install a malicious or compromised application on the device — no network access or privileged account is required. The weakness is classified as CWE-200 (Exposure of Sensitive Information).
Vector CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Which versions of Apple iOS and iPadOS are affected?
| BRANCH | AFFECTED | FIXED |
|---|---|---|
| iOS and iPadOS 27.x | before 27 | 27 |
| macOS 27.x | before 27 | 27 |
| visionOS 27.x | before 27 | 27 |
| watchOS 27.x | before 27 | 27 |
Is CVE-2026-84625 being exploited?
There are no public reports of exploitation as of 2026-09-30.
How to fix CVE-2026-84625
- Upgrade affected devices to version 27 or later for iOS, iPadOS, macOS, visionOS, and watchOS.
- Remove any untrusted or unnecessary apps and restrict app sources where possible (use enterprise or MDM controls).
- Follow the vendor guidance on sandbox and permission settings and monitor devices for suspicious app behavior.
Frequently asked questions
Is CVE-2026-84625 being actively exploited?
There are no public reports of exploitation as of 2026-09-30.
Which iOS and iPadOS versions are affected by CVE-2026-84625?
iOS and iPadOS builds before version 27 are affected; the same before-27 range applies to macOS, visionOS, and watchOS per the vendor's advisory.
Is there a patch for CVE-2026-84625?
Yes. Apple fixed the issue in version 27 for iOS, iPadOS, macOS, visionOS, and watchOS.
Does CVE-2026-84625 require authentication?
No privileged authentication is required, but a malicious or compromised app must be present on the device to exploit the issue.
References
- nvd.nist.gov/vuln/detail/CVE-2026-84625
- cve.org/CVERecord?id=CVE-2026-84625
- support.apple.com/en-us/149034
- support.apple.com/en-us/149035
- support.apple.com/en-us/149037
- support.apple.com/en-us/149038
- All Apple CVEs on CVE Radar
- CVEs published in September 2026