VENDOR

Apple vulnerabilities: CVEs, exploitation and patches

Every Apple CVE reviewed by Diras Labs analysts, newest first, with exploitation status and fixes.

  1. CVE-2026-43790 CRITICAL 9.1
  2. CVE-2026-84625
    IOS and iPadOS permissions issue lets an app fingerprint the user Apple iOS and iPadOS ·
    • PATCH AVAILABLE
    CRITICAL 9.1
  3. CVE-2026-86881
    IOS and iPadOS certificate validation bypass Apple iOS and iPadOS ·
    • PATCH AVAILABLE
    CRITICAL 9.1
  4. CVE-2026-64703
    MacOS use-after-free lets an app cause denial-of-service Apple macOS ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  5. CVE-2026-64695
    IOS and iPadOS kernel memory corruption over network Apple iOS and iPadOS ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  6. CVE-2026-64697
    MacOS kernel memory corruption remote code execution Apple macOS ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  7. CVE-2026-64704
    MacOS type confusion pre-auth remote code execution Apple macOS ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  8. CVE-2026-64702
    MacOS sandbox escape lets an app break out of its sandbox Apple macOS ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  9. CVE-2026-64700
    IOS and iPadOS use-after-free may let an app terminate the system Apple iOS and iPadOS ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  10. CVE-2026-64694
    MacOS integer overflow leads to remote code execution potential Apple macOS ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  11. CVE-2026-64698
    MacOS kernel memory bug lets local apps crash or read kernel memory Apple macOS ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  12. CVE-2026-64720
    IOS and iPadOS race condition lets remote attacker crash system Apple iOS and iPadOS ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  13. CVE-2026-64727 CRITICAL 9.8
  14. CVE-2026-64726
    IOS and iPadOS memory corruption allows remote code execution Apple iOS and iPadOS ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  15. CVE-2026-64729
    IOS and iPadOS use-after-free lets an app cause system termination Apple iOS and iPadOS ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  16. CVE-2026-64733
    IOS and iPadOS app fingerprinting information disclosure Apple iOS and iPadOS ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  17. CVE-2026-64738
    IOS and iPadOS sandbox escape allows app to break out of sandbox Apple iOS and iPadOS ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  18. CVE-2026-64731
    MacOS path handling sandbox escape Apple macOS ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  19. CVE-2026-64746
    IOS and iPadOS authorization bypass lets apps add contacts Apple iOS and iPadOS ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  20. CVE-2026-64751
    IOS and iPadOS use-after-free remote code execution Apple iOS and iPadOS ·
    • PATCH AVAILABLE
    CRITICAL 9.8
20 CVEs · page 1 of 3