Apple iPadOS Apple iPad Operating System
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Apple iPadOS.
Recent Apple iPadOS Security Advisories
| Advisory | Title | Published |
|---|---|---|
| 149041 | iOS 26.7 and iPadOS 26.7 - Apple Security Content | September 14, 2026 |
| 149034 | iOS 27 and iPadOS 27 - Apple Security Content | September 14, 2026 |
| 148282 | iOS 26.6.1 and iPadOS 26.6.1 - Apple Security Content | August 17, 2026 |
| 148287 | iOS 18.7.10 and iPadOS 18.7.10 - Apple Security Content | August 17, 2026 |
| 128066 | iOS 26.6 and iPadOS 26.6 - Apple Security Content | July 27, 2026 |
| 127594 | iOS 26.5.2 and iPadOS 26.5.2 - Apple Security Content | June 29, 2026 |
| 127111 | iOS 18.7.9 and iPadOS 18.7.9 - Apple Security Content | May 11, 2026 |
| 127113 | iOS 16.7.16 and iPadOS 16.7.16 - Apple Security Content | May 11, 2026 |
| 127112 | iPadOS 17.7.11 - Apple Security Content | May 11, 2026 |
| 127114 | iOS 15.8.8 and iPadOS 15.8.8 - Apple Security Content | May 11, 2026 |
EOL Dates
Ensure that you are using a supported version of Apple iPadOS. Here are some end of life, and end of support dates for Apple iPadOS.
| Release | EOL Date | Status |
|---|---|---|
| 27 | - |
Active
|
| 26 | - |
Active
|
| 18 | - |
Active
|
| 17 | - |
Active
|
| 16 | - |
Active
|
| 15 | - |
Active
|
| 14 | October 1, 2021 |
EOL
Apple iPadOS 14 became EOL in 2021 and supported ended in 2021 |
| 13 | September 16, 2020 |
EOL
Apple iPadOS 13 became EOL in 2020 and supported ended in 2020 |
| 12 | September 24, 2019 |
EOL
Apple iPadOS 12 became EOL in 2019 and supported ended in 2019 |
By the Year
In 2026 there have been 453 vulnerabilities in Apple iPadOS with an average score of 6.6 out of ten. Last year, in 2025 iPadOS had 362 security vulnerabilities published. That is, 91 more vulnerabilities have already been reported in 2026 as compared to last year. However, the average CVE base score of the vulnerabilities in 2026 is greater by 0.08.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 453 | 6.62 |
| 2025 | 362 | 6.54 |
| 2024 | 292 | 6.28 |
| 2023 | 267 | 6.79 |
| 2022 | 215 | 7.18 |
| 2021 | 336 | 6.91 |
| 2020 | 231 | 7.06 |
| 2019 | 34 | 5.30 |
It may take a day or so for new iPadOS vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Apple iPadOS Security Vulnerabilities
Apple OSes Type Confusion DFS before 27 via memory handling
CVE-2026-65409
5.5 - Medium
- September 14, 2026
A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause a denial of service.
Object Type Confusion
Apple OS OOB Write (fixed in iOS 26.7/27)
CVE-2026-86876
5.2 - Medium
- September 14, 2026
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, visionOS 27, watchOS 27. A sandboxed process may be able to circumvent sandbox restrictions.
Memory Corruption
Apple Safari 27: Exfiltration of installed apps via state management
CVE-2026-84518
4.3 - Medium
- September 14, 2026
This issue was addressed through improved state management. This issue is fixed in Safari 27, iOS 27 and iPadOS 27, macOS Golden Gate 27. A malicious website may be able to determine what apps a user has installed.
External Control of Critical State Data
File Write via Malicious Archive in iOS/iPadOS 26.7+, macOS 27+, visionOS 27
CVE-2026-84534
5.5 - Medium
- September 14, 2026
A path handling issue was addressed with improved validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, visionOS 27. Extracting a maliciously crafted archive may allow an attacker to write arbitrary files.
Directory traversal
Apple OS kernel use-after-free via NFS (fixed in 26.7/27)
CVE-2026-43686
8.8 - High
- September 14, 2026
A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Connecting to a malicious NFS server may lead to kernel memory corruption.
Dangling pointer
Apple OS OOB Write in File Processing (Fixed in iOS 27, macOS 15.8)
CVE-2026-84575
7.8 - High
- September 14, 2026
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted file may lead to unexpected app termination.
Memory Corruption
Apple iOS 27 Privacy Flaw: App Access to Sensitive Data via File Handling
CVE-2026-86883
5.5 - Medium
- September 14, 2026
A privacy issue was addressed with improved handling of files. This issue is fixed in iOS 27 and iPadOS 27, visionOS 27. An app may be able to access sensitive user data.
Information Disclosure
Path Handling Vulnerability in Apple OS (iOS/iPadOS <27, macOS <27)
CVE-2026-64756
5.5 - Medium
- September 14, 2026
A path handling issue was addressed with improved validation. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to access user-sensitive data.
Directory traversal
Memory init flaw in Apple OS (fixed in iOS 26.7, iPadOS 26.7, macOS 27)
CVE-2026-65405
5.5 - Medium
- September 14, 2026
A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to determine kernel memory layout.
Use of Uninitialized Variable
Apple iOS Persistent Account ID Disclosure via State Management
CVE-2026-86895
7.5 - High
- September 14, 2026
An information disclosure issue was addressed with improved state management. This issue is fixed in iOS 27 and iPadOS 27, tvOS 27, visionOS 27, watchOS 27. A local app may be able to read a persistent account identifier.
Information Disclosure
Apple OS OOB Write via Malicious 3D Model (Fixed in 26.7/27)
CVE-2026-84611
7.3 - High
- September 14, 2026
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted 3D model may lead to memory corruption.
Memory Corruption
Apple OSs: Race Condition Causing Unexpected Termination (CVE202684492)
CVE-2026-84492
4.7 - Medium
- September 14, 2026
A race condition was addressed with improved state handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause unexpected system termination.
Race Condition
Race condition in Apple iOS 26.7 allows kernel-priv exec via sandboxed app
CVE-2026-84607
7.8 - High
- September 14, 2026
A race condition was addressed with improved state management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. A sandboxed app may be able to execute arbitrary code with kernel privileges.
Race Condition
Apple Keychain Credential Deletion Vulnerability in iOS/macOS/visionOS 27
CVE-2026-86905
5.5 - Medium
- September 14, 2026
This issue was addressed by removing the vulnerable code. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, visionOS 27. An app may be able to delete credentials stored in Keychain.
Authorization
Apple OS Font Engine OOB Read Exposes Process Memory
CVE-2026-84596
6.5 - Medium
- September 14, 2026
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted font may result in the disclosure of process memory.
Out-of-bounds Read
Out-of-Bounds Read in Apple OS Font Parsing (CVE-2026-84597)
CVE-2026-84597
6.5 - Medium
- September 14, 2026
An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted font may result in the disclosure of process memory.
Out-of-bounds Read
Apple iOS/iPadOS/watchOS Privacy Tracking Vulnerability (CVE-2026-86904)
CVE-2026-86904
7.5 - High
- September 14, 2026
A privacy issue was addressed with improved state management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, watchOS 27. An app may be able to track users across apps and websites without permission.
Privacy violation
Apple iOS 26.7/iPadOS 26.7 App Data Leakage Vulnerability
CVE-2026-43664
5.5 - Medium
- September 14, 2026
This issue was addressed with improved data protection. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, watchOS 27. An app may be able to access sensitive user data.
Information Disclosure
Apple iOS Identifier Privacy Leak Across Reinstalls
CVE-2026-84606
7.5 - High
- September 14, 2026
A privacy issue was addressed with improved handling of identifiers. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, visionOS 27. An app may be able to identify a user across reinstalls.
Use of Insufficiently Random Values
Auth Issue: Motion Data from Headphones Access without Consent (iOS 26.7+)
CVE-2026-43737
5.5 - Medium
- September 14, 2026
An authorization issue was addressed with improved validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, watchOS 27. An app may be able to access motion data from headphones without user consent.
AuthZ
Apple WebKit Null Pointer Deref in Web Content (iOS 26.7+, macOS 15.8+)
CVE-2026-65412
6.5 - Medium
- September 14, 2026
A null pointer dereference was addressed with improved input validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, visionOS 27, watchOS 27. Processing web content may lead to a denial-of-service.
NULL Pointer Dereference
Apple iOS/iPadOS Auth Bypass via State Management (18.7.10)
CVE-2026-65404
5.5 - Medium
- September 14, 2026
An authorization issue was addressed with improved state management. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. A malicious application may be able to bypass Privacy preferences.
AuthZ
Apple OS ImageIO OOB Write pre 26.7
CVE-2026-86882
6.5 - Medium
- September 14, 2026
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted image may lead to unexpected process termination.
Memory Corruption
Apple OS Kernel Memory Disclosure via NFS Client (CVE-2026-43687)
CVE-2026-43687
6.5 - Medium
- September 14, 2026
The issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Connecting to a malicious NFS server may disclose kernel memory.
Information Disclosure
Apple iOS/iPadOS/macOS Buffer Overflow before 18.7.10/27/15.7.8/14.8.8
CVE-2026-84489
5.5 - Medium
- September 14, 2026
A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. An app may be able to cause a denial of service.
Classic Buffer Overflow
Kernel Memory OOB Write in Apple OS (iOS <26.7, macOS <15.8)
CVE-2026-84523
5.5 - Medium
- September 14, 2026
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause unexpected system termination or write kernel memory.
Memory Corruption
Apple iOS 27 Privacy Flaw: App Discovery via Preferences
CVE-2026-64761
7.5 - High
- September 14, 2026
A privacy issue was addressed with improved handling of user preferences. This issue is fixed in iOS 27 and iPadOS 27. An app may be able to identify what other apps a user has installed.
Information Disclosure
Race Condition in Apple OS leading to unexpected termination (fixed 26.727)
CVE-2026-84630
4.7 - Medium
- September 14, 2026
A race condition was addressed with improved state handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause unexpected system termination.
Race Condition
Safari Webarchive XSS via Malformed File
CVE-2026-86898
5.4 - Medium
- September 14, 2026
A logic issue was addressed with improved state management. This issue is fixed in Safari 27, iOS 27 and iPadOS 27, macOS Golden Gate 27, visionOS 27. Opening a maliciously crafted webarchive file may lead to universal cross-site scripting.
XSS
Out-of-Bounds Write in Disk Image Mounting on Apple OS iOS 26.7+ macOS 15.8+
CVE-2026-84519
6.5 - Medium
- September 14, 2026
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. Mounting a disk image with maliciously crafted files may lead to unexpected system termination.
Memory Corruption
Apple OS Integer Overflow in System Component Causes Crashes (preiOS 26.7, macOS 27)
CVE-2026-65408
5.5 - Medium
- September 14, 2026
An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to cause unexpected system termination.
Integer Overflow or Wraparound
Apple OS State Mgmt Info Disclosure Fixed in iOS 26.7
CVE-2026-84626
3.3 - Low
- September 14, 2026
An information disclosure issue was addressed with improved state management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to identify what other apps a user has installed.
Information Disclosure
Apple OS memory corruption via accessory input (fixed 26.7/27)
CVE-2026-86924
5.5 - Medium
- September 14, 2026
A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Tahoe 26.7. Connecting a malicious accessory may cause unexpected system termination.
Improper Input Validation
Apple iOS 27 Input Validation Flaw Causing Termination
CVE-2026-86885
6.5 - Medium
- September 14, 2026
An input validation issue was addressed with improved input validation. This issue is fixed in iOS 27 and iPadOS 27. An attacker in radio range may be able to cause unexpected system termination.
Improper Input Validation
Apple OS Image Processing OOB Write (CVE-2026-65395) before 26.7
CVE-2026-65395
6.5 - Medium
- September 14, 2026
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27. Processing a maliciously crafted image may result in memory corruption.
Memory Corruption
Apple OS Sensitive Data Exposure CVE-2026-65403 (fixed in iOS 27, macOS Sequoia 15.8)
CVE-2026-65403
5.5 - Medium
- September 14, 2026
This issue was addressed with improved checks. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, visionOS 27, watchOS 27. An app may be able to access sensitive user data.
Authorization
Apple OS 27: Kernel Race Condition Allowing Local User to Read Kernel Memory
CVE-2026-65415
8.1 - High
- September 14, 2026
A race condition was addressed with additional validation. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, tvOS 27, visionOS 27, watchOS 27. A local user may be able to cause unexpected system termination or read kernel memory.
Race Condition
Apple OS Permission Leak: App Can Read Device Name via API
CVE-2026-86893
3.3 - Low
- September 14, 2026
A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 27 and iPadOS 27, tvOS 27, visionOS 27, watchOS 27. An app may be able to read device name.
Improper Privilege Management
Apple OS authorization flaw before iOS 27 via state mgmt
CVE-2026-84617
5.5 - Medium
- September 14, 2026
An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27. An app may be able to access sensitive user data.
AuthZ
Apple OS OOB Read via Input Validation in Kernel
CVE-2026-86903
5.5 - Medium
- September 14, 2026
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, tvOS 27, visionOS 27, watchOS 27. An app may be able to disclose kernel memory.
Out-of-bounds Read
Apple iOS/iPadOS/macOS Auth Issue Fixed in 26.7/27, macOS 15.8
CVE-2026-84621
5.5 - Medium
- September 14, 2026
An authorization issue was addressed with improved access control. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to access sensitive user data.
AuthZ
Apple iOS/iPadOS File Quarantine Bypass pre-27
CVE-2026-65399
4.4 - Medium
- September 14, 2026
A file quarantine bypass was addressed with additional checks. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, visionOS 27, watchOS 27. An archive may be able to bypass Gatekeeper.
Authentication Bypass by Spoofing
Apple OS OOB Write (iOS 26.7/27, macOS 15.8/27)
CVE-2026-28966
4.3 - Medium
- September 14, 2026
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27. Processing a maliciously crafted file may lead to unexpected app termination.
Memory Corruption
Apple OS Race Condition Causes AppInduced Termination, Fixed in iOS 26.7
CVE-2026-65360
4.7 - Medium
- September 14, 2026
A race condition was addressed with improved state handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause unexpected system termination.
Race Condition
Heap Buffer Overflow in Apple OS before 27 (iOS 26.7 / iPadOS 26.7)
CVE-2026-86870
6.5 - Medium
- September 14, 2026
A heap buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, visionOS 27, watchOS 27. Processing a maliciously crafted file may lead to unexpected app termination.
Heap-based Buffer Overflow
Apple OS OOB Read in iOS 26.7/iPadOS 26.7, macOS Sequoia 15.8
CVE-2026-84532
5.4 - Medium
- September 14, 2026
An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27. Opening a maliciously crafted file may cause unexpected process termination or disclose process memory.
Out-of-bounds Read
Apple OS OOB Read in Font File Parser Fixed in iOS 27/macOS 15.8
CVE-2026-84524
4.3 - Medium
- September 14, 2026
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted font file may lead to unexpected app termination.
Out-of-bounds Read
Apple OS: Cryptographic Integrity Check Vulnerability Enabling Traffic Tampering
CVE-2026-84533
5.3 - Medium
- September 14, 2026
A cryptographic issue was addressed with improved integrity checks. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, tvOS 27, watchOS 27. An attacker in a privileged network position may be able to modify network traffic.
Missing Support for Integrity Check
Apple OS File Permission Escalation (iOS 27, macOS 15.8)
CVE-2026-43785
5.5 - Medium
- September 14, 2026
A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27. An app may be able to modify a file it only had permission to read.
AuthZ
Apple OS Uninitialized Memory Leak via Image CVE-2026-84564 (iOS 26.7+)
CVE-2026-84564
4.3 - Medium
- September 14, 2026
An uninitialized memory issue was addressed with improved memory initialization. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted image may result in disclosure of process memory.
Use of Uninitialized Variable
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Apple iPadOS or by Apple? Click the Watch button to subscribe.