macOS 26.x — End of Life
Active Actively exploitedmacOS 26.x — All releases
| Version | Released | Active support | EOL date | Latest patch | Status | Alert me |
|---|---|---|---|---|---|---|
| 26 | Sep 15, 2025 | — | No | 26.5.2 | Active |
CVEs affecting macOS 26.x (301)
| CVE | Severity | CVSS | EPSS | KEV | Cycle | Description | Published |
|---|---|---|---|---|---|---|---|
| CVE-2026-43746 | MEDIUM | 6.5 | 0.32% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 a… | Jun 29, 2026 |
| CVE-2026-43745 | MEDIUM | 6.5 | 0.60% | — | 26 | An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in Safari 26.5.2, iOS 26.… | Jun 29, 2026 |
| CVE-2026-43743 | MEDIUM | 4.7 | 0.10% | — | 26 | A race condition was addressed with improved state handling. This issue is fixed in iOS 26.5.2 and iPadOS 26.5.2, macOS … | Jun 29, 2026 |
| CVE-2026-43742 | MEDIUM | 6.5 | 0.34% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 a… | Jun 29, 2026 |
| CVE-2026-43740 | MEDIUM | 6.5 | 0.33% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.… | Jun 29, 2026 |
| CVE-2026-43735 | HIGH | 8.1 | 0.27% | — | 26 | The issue was addressed with improved checks. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS … | Jun 29, 2026 |
| CVE-2026-43734 | MEDIUM | 6.5 | 0.25% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 a… | Jun 29, 2026 |
| CVE-2026-43732 | MEDIUM | 6.5 | 0.39% | — | 26 | A path handling issue was addressed with improved validation. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadO… | Jun 29, 2026 |
| CVE-2026-43731 | HIGH | 8.8 | 0.23% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 a… | Jun 29, 2026 |
| CVE-2026-43727 | MEDIUM | 6.5 | 0.32% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 a… | Jun 29, 2026 |
| CVE-2026-43726 | MEDIUM | 6.5 | 0.21% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 a… | Jun 29, 2026 |
| CVE-2026-43725 | HIGH | 7.1 | 0.77% | — | 26 | The issue was addressed with improved input validation. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5… | Jun 29, 2026 |
| CVE-2026-43724 | HIGH | 7.8 | 0.28% | — | 26 | The issue was addressed with improved input sanitization. This issue is fixed in iOS 26.5.2 and iPadOS 26.5.2, macOS Tah… | Jun 29, 2026 |
| CVE-2026-43722 | MEDIUM | 5.5 | 0.23% | — | 26 | The issue was addressed with improved input sanitization. This issue is fixed in iOS 26.5.2 and iPadOS 26.5.2, macOS Tah… | Jun 29, 2026 |
| CVE-2026-43721 | MEDIUM | 6.5 | 0.39% | — | 26 | This issue was addressed through improved state management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS … | Jun 29, 2026 |
| CVE-2026-43720 | MEDIUM | 6.5 | 0.49% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 a… | Jun 29, 2026 |
| CVE-2026-43718 | MEDIUM | 6.5 | 0.39% | — | 26 | A stack overflow was addressed with improved input validation. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPad… | Jun 29, 2026 |
| CVE-2026-43717 | MEDIUM | 6.5 | 0.21% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 a… | Jun 29, 2026 |
| CVE-2026-43716 | MEDIUM | 6.5 | 0.60% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.… | Jun 29, 2026 |
| CVE-2026-43715 | HIGH | 8.8 | 0.80% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 a… | Jun 29, 2026 |
| CVE-2026-43713 | MEDIUM | 6.5 | 0.43% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPa… | Jun 29, 2026 |
| CVE-2026-43712 | MEDIUM | 6.5 | 0.32% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.… | Jun 29, 2026 |
| CVE-2026-43709 | MEDIUM | 6.5 | 0.25% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 a… | Jun 29, 2026 |
| CVE-2026-43708 | MEDIUM | 4.3 | 0.33% | — | 26 | The issue was addressed with improved input validation. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5… | Jun 29, 2026 |
| CVE-2026-43707 | MEDIUM | 6.5 | 0.62% | — | 26 | A memory corruption issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 … | Jun 29, 2026 |
| CVE-2026-43706 | MEDIUM | 6.5 | 0.28% | — | 26 | A double free issue was addressed with improved memory management. This issue is fixed in iOS 26.5.2 and iPadOS 26.5.2, … | Jun 29, 2026 |
| CVE-2026-43705 | HIGH | 8.8 | 0.40% | — | 26 | A type confusion issue was addressed with improved checks. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 2… | Jun 29, 2026 |
| CVE-2026-43704 | MEDIUM | 5.3 | 0.34% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 a… | Jun 29, 2026 |
| CVE-2026-43703 | MEDIUM | 6.5 | 0.31% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe … | Jun 29, 2026 |
| CVE-2026-43701 | HIGH | 7.1 | 0.47% | — | 26 | The issue was addressed with improved checks. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS … | Jun 29, 2026 |
| CVE-2026-43700 | MEDIUM | 6.5 | 0.21% | — | 26 | A cross-origin issue was addressed with improved tracking of security origins. This issue is fixed in Safari 26.5.2, iOS… | Jun 29, 2026 |
| CVE-2026-43699 | MEDIUM | 6.5 | 0.25% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 a… | Jun 29, 2026 |
| CVE-2026-43676 | MEDIUM | 6.5 | 0.35% | — | 26 | An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Safari 26.5.2, iOS 26.… | Jun 29, 2026 |
| CVE-2026-43663 | MEDIUM | 6.5 | 0.22% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.… | Jun 29, 2026 |
| CVE-2026-39872 | MEDIUM | 6.5 | 0.22% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.… | Jun 29, 2026 |
| CVE-2026-39868 | CRITICAL | 9.1 | 0.66% | — | 26 | This issue was addressed with improved input validation. This issue is fixed in iOS 26.5.2 and iPadOS 26.5.2, macOS Taho… | Jun 29, 2026 |
| CVE-2026-28979 | MEDIUM | 6.5 | 0.26% | — | 26 | An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Safari 26.5.2, iOS 26.… | Jun 29, 2026 |
| CVE-2025-46315 | HIGH | 7.5 | 0.27% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.1. An app may be a… | Jun 11, 2026 |
| CVE-2025-43339 | MEDIUM | 5.5 | 0.11% | — | 26 | An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Tahoe 26.1. A malicious… | Jun 11, 2026 |
| CVE-2025-46307 | MEDIUM | 5.5 | 0.15% | — | 26 | A logic issue was addressed with improved restrictions. This issue is fixed in macOS Tahoe 26. An app may be able to acc… | May 26, 2026 |
| CVE-2025-46280 | MEDIUM | 5.5 | 0.14% | — | 26 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Tahoe 26. An app may be … | May 26, 2026 |
| CVE-2025-43451 | MEDIUM | 5.5 | 0.14% | — | 26 | A permissions issue was addressed by removing the vulnerable code. This issue is fixed in macOS Tahoe 26. An app may be … | May 26, 2026 |
| CVE-2025-43524 | HIGH | 8.8 | 0.12% | — | 26 | An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.7.7, macOS S… | May 12, 2026 |
| CVE-2026-43668 | HIGH | 7.5 | 1.11% | — | 26 | A use after free issue was addressed with improved memory management. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.… | May 11, 2026 |
| CVE-2026-43666 | MEDIUM | 6.2 | 0.15% | — | 26 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.9 and iPadOS 1… | May 11, 2026 |
| CVE-2026-43661 | HIGH | 7.5 | 0.42% | — | 26 | A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 26.5 and iPadOS 26.5, ma… | May 11, 2026 |
| CVE-2026-43660 | HIGH | 7.5 | 0.27% | — | 26 | A validation issue was addressed with improved logic. This issue is fixed in Safari 26.5, iOS 18.7.9 and iPadOS 18.7.9, … | May 11, 2026 |
| CVE-2026-43659 | MEDIUM | 4.7 | 0.10% | — | 26 | A race condition was addressed with additional validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5… | May 11, 2026 |
| CVE-2026-43658 | HIGH | 7.5 | 0.32% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 26.5 and iPadOS 26.5, mac… | May 11, 2026 |
| CVE-2026-43656 | HIGH | 7.3 | 0.27% | — | 26 | An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 18.7.9 and iPadOS … | May 11, 2026 |
| CVE-2026-43655 | HIGH | 7.3 | 0.34% | — | 26 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 26.5 and iPadOS 26.5, macO… | May 11, 2026 |
| CVE-2026-43654 | HIGH | 7.5 | 0.35% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and… | May 11, 2026 |
| CVE-2026-43653 | MEDIUM | 6.2 | 0.15% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and… | May 11, 2026 |
| CVE-2026-43652 | HIGH | 7.5 | 0.24% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.5. An app may be a… | May 11, 2026 |
| CVE-2026-39871 | HIGH | 7.5 | 0.31% | — | 26 | A path handling issue was addressed with improved logic. This issue is fixed in macOS Sequoia 15.7.7, macOS Sonoma 14.8.… | May 11, 2026 |
| CVE-2026-39870 | HIGH | 7.5 | 0.31% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.7, macOS Sonoma 14.8.7,… | May 11, 2026 |
| CVE-2026-39869 | MEDIUM | 4.3 | 0.28% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and… | May 11, 2026 |
| CVE-2026-28996 | MEDIUM | 5.5 | 0.11% | — | 26 | A race condition was addressed with additional validation. This issue is fixed in iOS 26.5 and iPadOS 26.5, macOS Sequoi… | May 11, 2026 |
| CVE-2026-28995 | HIGH | 8.8 | 0.12% | — | 26 | A logic issue was addressed with improved restrictions. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 an… | May 11, 2026 |
| CVE-2026-28994 | MEDIUM | 5.3 | 0.24% | — | 26 | A use after free issue was addressed with improved memory management. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.… | May 11, 2026 |
| CVE-2026-28993 | MEDIUM | 5.5 | 0.12% | — | 26 | This issue was addressed by adding an additional prompt for user consent. This issue is fixed in iOS 18.7.9 and iPadOS 1… | May 11, 2026 |
| CVE-2026-28992 | MEDIUM | 4.7 | 0.14% | — | 26 | A memory corruption vulnerability was addressed with improved locking. This issue is fixed in iOS 18.7.9 and iPadOS 18.7… | May 11, 2026 |
| CVE-2026-28991 | HIGH | 7.5 | 0.38% | — | 26 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 26.5 and iPadOS 26.5, macO… | May 11, 2026 |
| CVE-2026-28990 | HIGH | 7.5 | 0.34% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in iOS 26.5 and iPadOS 26.5, macOS Sequoia 15… | May 11, 2026 |
| CVE-2026-28988 | MEDIUM | 5.5 | 0.13% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26.5 and iPadOS 26.5, macOS T… | May 11, 2026 |
| CVE-2026-28987 | HIGH | 7.5 | 0.44% | — | 26 | A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.… | May 11, 2026 |
| CVE-2026-28986 | HIGH | 7.5 | 0.41% | — | 26 | A race condition was addressed with additional validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5… | May 11, 2026 |
| CVE-2026-28985 | MEDIUM | 6.2 | 0.16% | — | 26 | A null pointer dereference was addressed with improved input validation. This issue is fixed in iOS 26.5 and iPadOS 26.5… | May 11, 2026 |
| CVE-2026-28983 | HIGH | 7.5 | 0.63% | — | 26 | A type confusion issue was addressed with improved checks. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5… | May 11, 2026 |
| CVE-2026-28978 | HIGH | 8.8 | 0.14% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.7, macOS Sonom… | May 11, 2026 |
| CVE-2026-28977 | MEDIUM | 6.2 | 0.16% | — | 26 | The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and i… | May 11, 2026 |
| CVE-2026-28976 | HIGH | 7.5 | 0.30% | — | 26 | An information leakage was addressed with additional validation. This issue is fixed in macOS Tahoe 26.5. An app may be … | May 11, 2026 |
| CVE-2026-28974 | HIGH | 7.5 | 0.41% | — | 26 | This issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in iOS 26.5 and iPadO… | May 11, 2026 |
| CVE-2026-28972 | MEDIUM | 6.5 | 1.39% | — | 26 | An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 18.7.9 and iPadOS … | May 11, 2026 |
| CVE-2026-28971 | MEDIUM | 4.3 | 0.30% | — | 26 | The issue was addressed with improved UI handling. This issue is fixed in Safari 26.5, iOS 26.5 and iPadOS 26.5, macOS T… | May 11, 2026 |
| CVE-2026-28969 | HIGH | 7.5 | 0.45% | — | 26 | A use after free issue was addressed with improved memory management. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.… | May 11, 2026 |
| CVE-2026-28962 | HIGH | 7.5 | 0.40% | — | 26 | This issue was addressed with improved access restrictions. This issue is fixed in Safari 26.5, iOS 18.7.9 and iPadOS 18… | May 11, 2026 |
| CVE-2026-28961 | MEDIUM | 4.6 | 0.16% | — | 26 | This issue was addressed with improved checks. This issue is fixed in macOS Tahoe 26.5. An attacker with physical access… | May 11, 2026 |
| CVE-2026-28959 | HIGH | 7.5 | 0.60% | — | 26 | A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS … | May 11, 2026 |
| CVE-2026-28958 | MEDIUM | 5.5 | 0.14% | — | 26 | This issue was addressed with improved data protection. This issue is fixed in Safari 26.5, iOS 26.5 and iPadOS 26.5, ma… | May 11, 2026 |
| CVE-2026-28956 | MEDIUM | 6.5 | 0.45% | — | 26 | A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 26.5 and iPadOS 26.5,… | May 11, 2026 |
| CVE-2026-28955 | HIGH | 8.8 | 0.69% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 18.7.9 and iPadOS 18.7.9,… | May 11, 2026 |
| CVE-2026-28954 | HIGH | 7.5 | 0.39% | — | 26 | A file quarantine bypass was addressed with additional checks. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, macO… | May 11, 2026 |
| CVE-2026-28953 | HIGH | 7.5 | 0.41% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 18.7.9 and iPadOS 18.7.9,… | May 11, 2026 |
| CVE-2026-28952 | HIGH | 7.5 | 0.62% | — | 26 | An integer overflow was addressed with improved input validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, m… | May 11, 2026 |
| CVE-2026-28951 | HIGH | 7.8 | 0.13% | — | 26 | An authorization issue was addressed with improved state management. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9… | May 11, 2026 |
| CVE-2026-28947 | HIGH | 8.8 | 0.38% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5, iOS 26.5 and i… | May 11, 2026 |
| CVE-2026-28946 | MEDIUM | 6.5 | 0.39% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5, macOS Tahoe 26… | May 11, 2026 |
| CVE-2026-28944 | HIGH | 7.5 | 0.40% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 26.5 and iPadOS 26.5, mac… | May 11, 2026 |
| CVE-2026-28943 | HIGH | 7.5 | 0.44% | — | 26 | A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.… | May 11, 2026 |
| CVE-2026-28942 | MEDIUM | 6.5 | 0.46% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5, iOS 26.5 and i… | May 11, 2026 |
| CVE-2026-28941 | HIGH | 7.1 | 0.46% | — | 26 | The issue was addressed with improved checks. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, macOS Sequoia 15.7.7,… | May 11, 2026 |
| CVE-2026-28940 | HIGH | 8.8 | 0.60% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and… | May 11, 2026 |
| CVE-2026-28936 | HIGH | 7.5 | 0.40% | — | 26 | The issue was addressed with improved checks. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 2… | May 11, 2026 |
| CVE-2026-28930 | HIGH | 7.5 | 0.30% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.5. An app may be a… | May 11, 2026 |
| CVE-2026-28929 | HIGH | 7.5 | 0.41% | — | 26 | A logic issue was addressed with improved checks. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, macOS Sequoia 15.… | May 11, 2026 |
| CVE-2026-28925 | HIGH | 7.5 | 0.44% | — | 26 | A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.7, macOS Sonoma… | May 11, 2026 |
| CVE-2026-28924 | HIGH | 7.5 | 0.31% | — | 26 | A race condition was addressed with improved handling of symbolic links. This issue is fixed in macOS Sequoia 15.7.7, ma… | May 11, 2026 |
| CVE-2026-28923 | HIGH | 8.8 | 0.15% | — | 26 | A logging issue was addressed with improved data redaction. This issue is fixed in macOS Sequoia 15.7.7, macOS Sonoma 14… | May 11, 2026 |
| CVE-2026-28922 | MEDIUM | 6.5 | 0.32% | — | 26 | This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.7.7, macOS Sonoma 14… | May 11, 2026 |
| CVE-2026-28920 | MEDIUM | 6.5 | 0.32% | — | 26 | An information leakage was addressed with additional validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iO… | May 11, 2026 |
| CVE-2026-28919 | HIGH | 7.8 | 0.15% | — | 26 | A consistency issue was addressed with improved state handling. This issue is fixed in macOS Sequoia 15.7.7, macOS Sonom… | May 11, 2026 |
| CVE-2026-28918 | MEDIUM | 6.5 | 0.49% | — | 26 | An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 26.5 and iPadOS 26… | May 11, 2026 |
| CVE-2026-28917 | MEDIUM | 4.3 | 0.30% | — | 26 | The issue was addressed with improved input validation. This issue is fixed in Safari 26.5, iOS 18.7.9 and iPadOS 18.7.9… | May 11, 2026 |
| CVE-2026-28915 | HIGH | 7.8 | 0.18% | — | 26 | A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in m… | May 11, 2026 |
| CVE-2026-28914 | MEDIUM | 5.5 | 0.14% | — | 26 | A logic issue was addressed with improved file handling. This issue is fixed in macOS Tahoe 26.5. A maliciously crafted … | May 11, 2026 |
| CVE-2026-28913 | HIGH | 7.5 | 0.33% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 26.5 and iPadOS 26.5, mac… | May 11, 2026 |
| CVE-2026-28910 | LOW | 3.3 | 0.12% | — | 26 | This issue was addressed with improved permissions checking. This issue is fixed in macOS Tahoe 26.4. A malicious app ma… | May 11, 2026 |
| CVE-2026-28908 | HIGH | 7.5 | 0.48% | — | 26 | A denial of service issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.7.7, ma… | May 11, 2026 |
| CVE-2026-28907 | HIGH | 8.1 | 0.30% | — | 26 | The issue was addressed with improved input validation. This issue is fixed in Safari 26.5, iOS 18.7.9 and iPadOS 18.7.9… | May 11, 2026 |
| CVE-2026-28906 | HIGH | 7.5 | 0.43% | — | 26 | This issue was addressed through improved state management. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.… | May 11, 2026 |
| CVE-2026-28905 | HIGH | 7.5 | 0.41% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 26.5 and iPadOS 26.5, mac… | May 11, 2026 |
| CVE-2026-28904 | HIGH | 7.5 | 0.41% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 18.7.9 and iPadOS 18.7.9,… | May 11, 2026 |
| CVE-2026-28903 | MEDIUM | 6.5 | 0.39% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 18.7.9 and iPadOS 18.7.9,… | May 11, 2026 |
| CVE-2026-28902 | MEDIUM | 6.5 | 0.39% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 26.5 and iPadOS 26.5, mac… | May 11, 2026 |
| CVE-2026-28901 | MEDIUM | 4.3 | 0.39% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 26.5 and iPadOS 26.5, mac… | May 11, 2026 |
| CVE-2026-28897 | MEDIUM | 6.2 | 0.17% | — | 26 | A buffer overflow was addressed with improved input validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS… | May 11, 2026 |
| CVE-2026-28883 | HIGH | 7.5 | 0.40% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5, iOS 26.5 and i… | May 11, 2026 |
| CVE-2026-28860 | HIGH | 7.5 | 0.38% | — | 26 | The issue was addressed with improved input validation. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 an… | May 11, 2026 |
| CVE-2026-28848 | HIGH | 7.5 | 0.54% | — | 26 | A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.7, macOS Tahoe … | May 11, 2026 |
| CVE-2026-28847 | HIGH | 8.8 | 0.60% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5, iOS 18.7.9 and iPadOS 18.7.9,… | May 11, 2026 |
| CVE-2026-28846 | HIGH | 7.5 | 0.73% | — | 26 | A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS … | May 11, 2026 |
| CVE-2026-28840 | HIGH | 7.8 | 0.14% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.7, macOS Sonom… | May 11, 2026 |
| CVE-2026-28830 | MEDIUM | 4.7 | 0.08% | — | 26 | A race condition was addressed with additional validation. This issue is fixed in macOS Tahoe 26.4. An app may be able t… | May 11, 2026 |
| CVE-2026-28819 | MEDIUM | 5.4 | 7.11% | — | 26 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.9 and iPadOS 1… | May 11, 2026 |
| CVE-2026-20696 | MEDIUM | 5.5 | 0.11% | — | 26 | An authorization issue was addressed with improved state management. This issue is fixed in macOS Tahoe 26.4. An app may… | May 11, 2026 |
| CVE-2026-28894 | HIGH | 7.5 | 0.66% | — | 26 | A denial-of-service issue was addressed with improved input validation. This issue is fixed in iOS 26.4 and iPadOS 26.4,… | Mar 25, 2026 |
| CVE-2026-28893 | LOW | 3.3 | 0.12% | — | 26 | A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Tahoe 26.4. A docu… | Mar 25, 2026 |
| CVE-2026-28892 | MEDIUM | 5.5 | 0.17% | — | 26 | A permissions issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.7.5, macOS So… | Mar 25, 2026 |
| CVE-2026-28891 | HIGH | 8.1 | 0.14% | — | 26 | A race condition was addressed with additional validation. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 14.… | Mar 25, 2026 |
| CVE-2026-28888 | MEDIUM | 5.1 | 0.15% | — | 26 | A race condition was addressed with improved state handling. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 1… | Mar 25, 2026 |
| CVE-2026-28886 | MEDIUM | 5.9 | 0.65% | — | 26 | A null pointer dereference was addressed with improved input validation. This issue is fixed in iOS 18.7.7 and iPadOS 18… | Mar 25, 2026 |
| CVE-2026-28882 | MEDIUM | 4.0 | 0.19% | — | 26 | This issue was addressed with improved checks. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.4 and iPadOS … | Mar 25, 2026 |
| CVE-2026-28881 | MEDIUM | 5.5 | 0.18% | — | 26 | A privacy issue was addressed by moving sensitive data. This issue is fixed in macOS Tahoe 26.4. An app may be able to a… | Mar 25, 2026 |
| CVE-2026-28880 | MEDIUM | 6.5 | 0.78% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS… | Mar 25, 2026 |
| CVE-2026-28879 | MEDIUM | 6.5 | 0.45% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.… | Mar 25, 2026 |
| CVE-2026-28878 | MEDIUM | 6.5 | 0.86% | — | 26 | A privacy issue was addressed by removing sensitive data. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 … | Mar 25, 2026 |
| CVE-2026-28877 | MEDIUM | 5.5 | 0.17% | — | 26 | An authorization issue was addressed with improved state management. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9… | Mar 25, 2026 |
| CVE-2026-28876 | HIGH | 7.5 | 0.47% | — | 26 | A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in i… | Mar 25, 2026 |
| CVE-2026-28871 | MEDIUM | 4.3 | 0.28% | — | 26 | A logic issue was addressed with improved checks. This issue is fixed in Safari 26.4, iOS 18.7.7 and iPadOS 18.7.7, iOS … | Mar 25, 2026 |
| CVE-2026-28870 | MEDIUM | 5.5 | 0.16% | — | 26 | An information leakage was addressed with additional validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iO… | Mar 25, 2026 |
| CVE-2026-28868 | MEDIUM | 5.5 | 0.19% | — | 26 | A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.… | Mar 25, 2026 |
| CVE-2026-28867 | MEDIUM | 6.2 | 0.22% | — | 26 | This issue was addressed with improved authentication. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and… | Mar 25, 2026 |
| CVE-2026-28866 | MEDIUM | 6.2 | 0.23% | — | 26 | This issue was addressed with improved validation of symlinks. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS … | Mar 25, 2026 |
| CVE-2026-28865 | HIGH | 7.5 | 0.76% | — | 26 | An authentication issue was addressed with improved state management. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.… | Mar 25, 2026 |
| CVE-2026-28864 | LOW | 3.3 | 0.17% | — | 26 | This issue was addressed with improved permissions checking. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26… | Mar 25, 2026 |
| CVE-2026-28862 | MEDIUM | 5.3 | 0.79% | — | 26 | A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia… | Mar 25, 2026 |
| CVE-2026-28861 | MEDIUM | 4.3 | 0.31% | — | 26 | A logic issue was addressed with improved state management. This issue is fixed in Safari 26.4, iOS 18.7.7 and iPadOS 18… | Mar 25, 2026 |
| CVE-2026-28859 | MEDIUM | 4.3 | 0.64% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.4, iOS 26.4 and iPadOS 26.4, mac… | Mar 25, 2026 |
| CVE-2026-28857 | MEDIUM | 6.5 | 0.57% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.4, iOS 26.4 and iPadOS 26.4, mac… | Mar 25, 2026 |
| CVE-2026-28855 | HIGH | 7.5 | 0.28% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS T… | Mar 25, 2026 |
| CVE-2026-28852 | MEDIUM | 5.5 | 0.21% | — | 26 | A stack overflow was addressed with improved input validation. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS … | Mar 25, 2026 |
| CVE-2026-28845 | MEDIUM | 5.5 | 0.12% | — | 26 | An authorization issue was addressed with improved state management. This issue is fixed in macOS Tahoe 26.4. An app may… | Mar 25, 2026 |
| CVE-2026-28844 | MEDIUM | 6.5 | 0.34% | — | 26 | A file access issue was addressed with improved input validation. This issue is fixed in macOS Tahoe 26.4. An attacker m… | Mar 25, 2026 |
| CVE-2026-28842 | HIGH | 7.5 | 0.38% | — | 26 | The issue was addressed with improved bounds checks. This issue is fixed in macOS Tahoe 26.4. A buffer overflow may resu… | Mar 25, 2026 |
| CVE-2026-28841 | MEDIUM | 6.2 | 0.16% | — | 26 | A buffer overflow was addressed with improved size validation. This issue is fixed in macOS Tahoe 26.4. A buffer overflo… | Mar 25, 2026 |
| CVE-2026-28839 | MEDIUM | 5.3 | 0.40% | — | 26 | The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 14.8.5, macOS Ta… | Mar 25, 2026 |
| CVE-2026-28838 | MEDIUM | 5.3 | 0.47% | — | 26 | A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.7.5, mac… | Mar 25, 2026 |
| CVE-2026-28837 | HIGH | 7.5 | 0.34% | — | 26 | A logic issue was addressed with improved checks. This issue is fixed in macOS Tahoe 26.4. An app may be able to access … | Mar 25, 2026 |
| CVE-2026-28835 | MEDIUM | 6.5 | 0.45% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Sequoia 15.7.5, macOS… | Mar 25, 2026 |
| CVE-2026-28834 | MEDIUM | 5.1 | 0.15% | — | 26 | A race condition was addressed with improved state handling. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 1… | Mar 25, 2026 |
| CVE-2026-28833 | MEDIUM | 6.2 | 0.24% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26.4 and iPadOS 26.4, macOS T… | Mar 25, 2026 |
| CVE-2026-28832 | HIGH | 8.4 | 0.20% | — | 26 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.5, macOS So… | Mar 25, 2026 |
| CVE-2026-28831 | MEDIUM | 5.5 | 0.17% | — | 26 | An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.5, macOS … | Mar 25, 2026 |
| CVE-2026-28829 | MEDIUM | 5.5 | 0.17% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonom… | Mar 25, 2026 |
| CVE-2026-28828 | MEDIUM | 5.3 | 0.34% | — | 26 | A permissions issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.7.5, macOS So… | Mar 25, 2026 |
| CVE-2026-28827 | CRITICAL | 9.3 | 0.28% | — | 26 | A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in m… | Mar 25, 2026 |
| CVE-2026-28826 | MEDIUM | 4.0 | 0.17% | — | 26 | A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 14.8.5… | Mar 25, 2026 |
| CVE-2026-28825 | HIGH | 7.1 | 0.36% | — | 26 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.5, m… | Mar 25, 2026 |
| CVE-2026-28824 | MEDIUM | 5.3 | 0.34% | — | 26 | An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.5, macOS … | Mar 25, 2026 |
| CVE-2026-28823 | MEDIUM | 4.9 | 0.29% | — | 26 | A path handling issue was addressed with improved validation. This issue is fixed in macOS Tahoe 26.4. An app with root … | Mar 25, 2026 |
| CVE-2026-28822 | MEDIUM | 6.2 | 0.20% | — | 26 | A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 26.4 and iPadOS 26.4, mac… | Mar 25, 2026 |
| CVE-2026-28821 | HIGH | 8.4 | 0.21% | — | 26 | A validation issue existed in the entitlement verification. This issue was addressed with improved validation of the pro… | Mar 25, 2026 |
| CVE-2026-28820 | MEDIUM | 5.3 | 0.21% | — | 26 | This issue was addressed with improved checks. This issue is fixed in macOS Tahoe 26.4. An app may be able to access sen… | Mar 25, 2026 |
| CVE-2026-28818 | MEDIUM | 5.3 | 0.40% | — | 26 | A logging issue was addressed with improved data redaction. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 14… | Mar 25, 2026 |
| CVE-2026-28817 | HIGH | 8.1 | 0.16% | — | 26 | A race condition was addressed with improved state handling. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 1… | Mar 25, 2026 |
| CVE-2026-28816 | MEDIUM | 4.0 | 0.22% | — | 26 | A path handling issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma … | Mar 25, 2026 |
| CVE-2026-20701 | HIGH | 7.5 | 0.42% | — | 26 | An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.7.5, macOS S… | Mar 25, 2026 |
| CVE-2026-20699 | MEDIUM | 6.2 | 0.14% | — | 26 | A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions. This issu… | Mar 25, 2026 |
| CVE-2026-20698 | HIGH | 7.8 | 0.33% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4… | Mar 25, 2026 |
| CVE-2026-20697 | MEDIUM | 5.3 | 0.40% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonom… | Mar 25, 2026 |
| CVE-2026-20695 | MEDIUM | 6.2 | 0.32% | — | 26 | An information disclosure issue was addressed with improved memory management. This issue is fixed in macOS Sequoia 15.7… | Mar 25, 2026 |
| CVE-2026-20694 | MEDIUM | 5.5 | 0.20% | — | 26 | This issue was addressed with improved handling of symlinks. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Sequ… | Mar 25, 2026 |
| CVE-2026-20693 | MEDIUM | 4.9 | 0.40% | — | 26 | This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 14… | Mar 25, 2026 |
| CVE-2026-20692 | MEDIUM | 5.3 | 0.42% | — | 26 | A privacy issue was addressed with improved handling of user preferences. This issue is fixed in iOS 26.4 and iPadOS 26.… | Mar 25, 2026 |
| CVE-2026-20691 | MEDIUM | 4.3 | 0.28% | — | 26 | An authorization issue was addressed with improved state management. This issue is fixed in Safari 26.4, iOS 26.4 and iP… | Mar 25, 2026 |
| CVE-2026-20690 | MEDIUM | 6.5 | 0.72% | — | 26 | An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.7 and iPadOS … | Mar 25, 2026 |
| CVE-2026-20688 | CRITICAL | 9.3 | 0.27% | — | 26 | A path handling issue was addressed with improved validation. This issue is fixed in iOS 26.4 and iPadOS 26.4, macOS Seq… | Mar 25, 2026 |
| CVE-2026-20687 | HIGH | 7.1 | 0.34% | — | 26 | A use after free issue was addressed with improved memory management. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.… | Mar 25, 2026 |
| CVE-2026-20684 | LOW | 3.3 | 0.13% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.4. An app may bypa… | Mar 25, 2026 |
| CVE-2026-20670 | MEDIUM | 5.5 | 0.12% | — | 26 | An authorization issue was addressed with improved state management. This issue is fixed in macOS Sonoma 14.8.4, macOS T… | Mar 25, 2026 |
| CVE-2026-20668 | MEDIUM | 5.5 | 0.18% | — | 26 | A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.… | Mar 25, 2026 |
| CVE-2026-20665 | MEDIUM | 6.5 | 0.61% | — | 26 | This issue was addressed through improved state management. This issue is fixed in Safari 26.4, iOS 18.7.7 and iPadOS 18… | Mar 25, 2026 |
| CVE-2026-20664 | MEDIUM | 4.3 | 0.72% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.4, iOS 26.4 and iPadOS 26.4, mac… | Mar 25, 2026 |
| CVE-2026-20651 | MEDIUM | 6.2 | 0.20% | — | 26 | A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sequoia 15.7.5, ma… | Mar 25, 2026 |
| CVE-2026-20639 | HIGH | 7.5 | 0.60% | — | 26 | An integer overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.5, macOS Son… | Mar 25, 2026 |
| CVE-2026-20637 | MEDIUM | 6.2 | 0.20% | — | 26 | A use after free issue was addressed with improved memory management. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.… | Mar 25, 2026 |
| CVE-2026-20633 | MEDIUM | 5.5 | 0.21% | — | 26 | This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 1… | Mar 25, 2026 |
| CVE-2026-20632 | MEDIUM | 5.3 | 0.30% | — | 26 | A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in m… | Mar 25, 2026 |
| CVE-2026-20631 | HIGH | 8.8 | 0.30% | — | 26 | A logic issue was addressed with improved checks. This issue is fixed in macOS Tahoe 26.4. A user may be able to elevate… | Mar 25, 2026 |
| CVE-2026-20622 | HIGH | 7.5 | 0.28% | — | 26 | A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sequoia 15.7.4, ma… | Mar 25, 2026 |
| CVE-2026-20607 | MEDIUM | 4.0 | 0.19% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonom… | Mar 25, 2026 |
| CVE-2026-20643 | MEDIUM | 5.4 | 0.35% | — | 26 | A cross-origin issue in the Navigation API was addressed with improved input validation. This issue is fixed in Backgrou… | Mar 17, 2026 |
| CVE-2026-20700 | HIGH | 7.8 | 1.32% | KEV | 26 | A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3,… | Feb 11, 2026 |
| CVE-2026-20681 | LOW | 3.3 | 0.11% | — | 26 | A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Tahoe 2… | Feb 11, 2026 |
| CVE-2026-20680 | MEDIUM | 6.5 | 0.12% | — | 26 | The issue was addressed with additional restrictions on the observability of app states. This issue is fixed in iOS 18.7… | Feb 11, 2026 |
| CVE-2026-20677 | CRITICAL | 9.0 | 0.26% | — | 26 | A race condition was addressed with improved handling of symbolic links. This issue is fixed in iOS 18.7.5 and iPadOS 18… | Feb 11, 2026 |
| CVE-2026-20676 | MEDIUM | 5.3 | 0.22% | — | 26 | This issue was addressed through improved state management. This issue is fixed in Safari 26.3, iOS 26.3 and iPadOS 26.3… | Feb 11, 2026 |
| CVE-2026-20675 | MEDIUM | 5.5 | 0.25% | — | 26 | The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and i… | Feb 11, 2026 |
| CVE-2026-20673 | MEDIUM | 5.3 | 0.31% | — | 26 | A logic issue was addressed with improved checks. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, macOS Sequoia 15.… | Feb 11, 2026 |
| CVE-2026-20671 | LOW | 3.1 | 0.32% | — | 26 | A logic issue was addressed with improved checks. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPad… | Feb 11, 2026 |
| CVE-2026-20669 | MEDIUM | 5.5 | 0.13% | — | 26 | A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in m… | Feb 11, 2026 |
| CVE-2026-20667 | HIGH | 8.8 | 0.13% | — | 26 | A logic issue was addressed with improved checks. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Sequoia 15.7.4,… | Feb 11, 2026 |
| CVE-2026-20666 | MEDIUM | 5.5 | 0.11% | — | 26 | An authorization issue was addressed with improved state management. This issue is fixed in macOS Tahoe 26.3. An app may… | Feb 11, 2026 |
| CVE-2026-20662 | MEDIUM | 4.6 | 0.15% | — | 26 | An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.4, macOS … | Feb 11, 2026 |
| CVE-2026-20660 | HIGH | 7.5 | 0.78% | — | 26 | A path handling issue was addressed with improved logic. This issue is fixed in Safari 26.3, iOS 18.7.5 and iPadOS 18.7.… | Feb 11, 2026 |
| CVE-2026-20658 | HIGH | 7.8 | 0.13% | — | 26 | A package validation issue was addressed by blocking the vulnerable package. This issue is fixed in macOS Tahoe 26.3. An… | Feb 11, 2026 |
| CVE-2026-20656 | LOW | 3.3 | 0.11% | — | 26 | A logic issue was addressed with improved validation. This issue is fixed in Safari 26.3, iOS 18.7.5 and iPadOS 18.7.5, … | Feb 11, 2026 |
| CVE-2026-20654 | MEDIUM | 5.5 | 0.13% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Tahoe 26.3… | Feb 11, 2026 |
| CVE-2026-20653 | MEDIUM | 5.5 | 0.15% | — | 26 | A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in i… | Feb 11, 2026 |
| CVE-2026-20652 | HIGH | 7.5 | 0.61% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.3, iOS 18.7.5 and iPadOS 18.7.5,… | Feb 11, 2026 |
| CVE-2026-20650 | HIGH | 7.5 | 0.47% | — | 26 | A denial-of-service issue was addressed with improved validation. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS… | Feb 11, 2026 |
| CVE-2026-20649 | HIGH | 7.5 | 0.23% | — | 26 | A logging issue was addressed with improved data redaction. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Tahoe… | Feb 11, 2026 |
| CVE-2026-20648 | MEDIUM | 5.5 | 0.13% | — | 26 | A privacy issue was addressed by moving sensitive data to a protected location. This issue is fixed in macOS Tahoe 26.3.… | Feb 11, 2026 |
| CVE-2026-20647 | MEDIUM | 5.5 | 0.14% | — | 26 | This issue was addressed with improved data protection. This issue is fixed in macOS Tahoe 26.3. An app may be able to a… | Feb 11, 2026 |
| CVE-2026-20646 | LOW | 3.3 | 0.12% | — | 26 | A logging issue was addressed with improved data redaction. This issue is fixed in macOS Tahoe 26.3. A malicious app may… | Feb 11, 2026 |
| CVE-2026-20644 | MEDIUM | 6.5 | 0.29% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.3, iOS 18.7.5 and iPadOS 18.7.5,… | Feb 11, 2026 |
| CVE-2026-20641 | HIGH | 7.1 | 0.14% | — | 26 | A privacy issue was addressed with improved checks. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iP… | Feb 11, 2026 |
| CVE-2026-20636 | MEDIUM | 6.5 | 0.38% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.3, iOS 26.3 and iPadOS 26.3, mac… | Feb 11, 2026 |
| CVE-2026-20635 | MEDIUM | 4.3 | 0.29% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.3, iOS 18.7.5 and iPadOS 18.7.5,… | Feb 11, 2026 |
| CVE-2026-20634 | MEDIUM | 5.5 | 0.24% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and… | Feb 11, 2026 |
| CVE-2026-20630 | MEDIUM | 5.5 | 0.12% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.3. An app may be a… | Feb 11, 2026 |
| CVE-2026-20629 | MEDIUM | 5.5 | 0.11% | — | 26 | A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Tahoe 26.3. An app… | Feb 11, 2026 |
| CVE-2026-20628 | HIGH | 7.1 | 0.12% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS… | Feb 11, 2026 |
| CVE-2026-20627 | MEDIUM | 5.5 | 0.14% | — | 26 | An issue existed in the handling of environment variables. This issue was addressed with improved validation. This issue… | Feb 11, 2026 |
| CVE-2026-20626 | HIGH | 7.8 | 0.12% | — | 26 | This issue was addressed with improved checks. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Sequoia 15.7.4, ma… | Feb 11, 2026 |
| CVE-2026-20625 | MEDIUM | 5.5 | 0.21% | — | 26 | A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in m… | Feb 11, 2026 |
| CVE-2026-20624 | MEDIUM | 5.5 | 0.18% | — | 26 | An injection issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.7.4, macOS Sonoma 14.… | Feb 11, 2026 |
| CVE-2026-20623 | MEDIUM | 5.5 | 0.13% | — | 26 | A permissions issue was addressed by removing the vulnerable code. This issue is fixed in macOS Tahoe 26.3. An app may b… | Feb 11, 2026 |
| CVE-2026-20621 | MEDIUM | 5.5 | 0.13% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and… | Feb 11, 2026 |
| CVE-2026-20620 | HIGH | 7.7 | 0.20% | — | 26 | An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.4, m… | Feb 11, 2026 |
| CVE-2026-20619 | MEDIUM | 5.5 | 0.13% | — | 26 | A logging issue was addressed with improved data redaction. This issue is fixed in macOS Sequoia 15.7.4, macOS Tahoe 26.… | Feb 11, 2026 |
| CVE-2026-20618 | MEDIUM | 5.5 | 0.13% | — | 26 | An issue was addressed with improved handling of temporary files. This issue is fixed in macOS Tahoe 26.3. An app may be… | Feb 11, 2026 |
| CVE-2026-20617 | HIGH | 7.0 | 0.10% | — | 26 | A race condition was addressed with improved state handling. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Sono… | Feb 11, 2026 |
| CVE-2026-20616 | HIGH | 8.8 | 0.54% | — | 26 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.5 and iPadOS 1… | Feb 11, 2026 |
| CVE-2026-20615 | HIGH | 7.8 | 0.16% | — | 26 | A path handling issue was addressed with improved validation. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Son… | Feb 11, 2026 |
| CVE-2026-20614 | HIGH | 7.8 | 0.16% | — | 26 | A path handling issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.7.4, macOS Sonoma … | Feb 11, 2026 |
| CVE-2026-20612 | MEDIUM | 5.5 | 0.13% | — | 26 | A privacy issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, ma… | Feb 11, 2026 |
| CVE-2026-20611 | HIGH | 7.8 | 0.25% | — | 26 | An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.5 and iPadOS … | Feb 11, 2026 |
| CVE-2026-20610 | HIGH | 7.8 | 0.20% | — | 26 | This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Tahoe 26.3. An app may be able… | Feb 11, 2026 |
| CVE-2026-20609 | MEDIUM | 4.4 | 0.12% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and… | Feb 11, 2026 |
| CVE-2026-20608 | MEDIUM | 5.5 | 0.23% | — | 26 | This issue was addressed through improved state management. This issue is fixed in Safari 26.3, iOS 18.7.5 and iPadOS 18… | Feb 11, 2026 |
| CVE-2026-20606 | HIGH | 7.1 | 0.14% | — | 26 | This issue was addressed by removing the vulnerable code. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 … | Feb 11, 2026 |
| CVE-2026-20605 | MEDIUM | 4.6 | 0.24% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, macOS Sequoi… | Feb 11, 2026 |
| CVE-2026-20603 | MEDIUM | 4.4 | 0.13% | — | 26 | This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Tahoe 26.3. An a… | Feb 11, 2026 |
| CVE-2026-20602 | MEDIUM | 5.5 | 0.14% | — | 26 | The issue was addressed with improved handling of caches. This issue is fixed in macOS Sequoia 15.7.4, macOS Sonoma 14.8… | Feb 11, 2026 |
| CVE-2026-20601 | LOW | 3.3 | 0.14% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.3. An app may be a… | Feb 11, 2026 |
| CVE-2025-46316 | MEDIUM | 4.3 | 0.28% | — | 26 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in Pages 15.1, iOS 26.1 and iPad… | Jan 28, 2026 |
| CVE-2025-46306 | MEDIUM | 5.5 | 0.12% | — | 26 | The issue was addressed with improved bounds checks. This issue is fixed in Keynote 15.1, iOS 26 and iPadOS 26, macOS Ta… | Jan 28, 2026 |
| CVE-2025-46299 | MEDIUM | 4.3 | 0.27% | — | 26 | A memory initialization issue was addressed with improved memory handling. This issue is fixed in Safari 26.2, iOS 26.2 … | Jan 9, 2026 |
| CVE-2025-46298 | MEDIUM | 6.5 | 0.32% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.2, iOS 26.2 and iPadOS 26.2, mac… | Jan 9, 2026 |
| CVE-2025-46297 | MEDIUM | 5.5 | 0.11% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.2. An app may be a… | Jan 9, 2026 |
| CVE-2025-46291 | HIGH | 7.8 | 0.21% | — | 26 | A logic issue was addressed with improved validation. This issue is fixed in macOS Tahoe 26.2. An app may bypass Gatekee… | Dec 17, 2025 |
| CVE-2025-46288 | MEDIUM | 5.5 | 0.16% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26.2 and iPadOS 26.2, macOS T… | Dec 17, 2025 |
| CVE-2025-46283 | MEDIUM | 5.5 | 0.18% | — | 26 | A logic issue was addressed with improved validation. This issue is fixed in macOS Sonoma 14.8.4, macOS Tahoe 26.2. An a… | Dec 17, 2025 |
| CVE-2025-46282 | MEDIUM | 5.5 | 0.15% | — | 26 | The issue was addressed with additional permissions checks. This issue is fixed in Safari 26.2, macOS Tahoe 26.2. An app… | Dec 17, 2025 |
| CVE-2025-46281 | HIGH | 8.8 | 0.19% | — | 26 | A logic issue was addressed with improved checks. This issue is fixed in macOS Tahoe 26.2. An app may be able to break o… | Dec 17, 2025 |
| CVE-2025-46279 | LOW | 3.3 | 0.34% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 18.7.3 and iPadOS 18.7.3, iOS… | Dec 17, 2025 |
| CVE-2025-46278 | MEDIUM | 5.5 | 0.16% | — | 26 | The issue was addressed with improved handling of caches. This issue is fixed in macOS Tahoe 26.2. An app may be able to… | Dec 17, 2025 |
| CVE-2025-46277 | LOW | 3.3 | 0.17% | — | 26 | A logging issue was addressed with improved data redaction. This issue is fixed in iOS 26.2 and iPadOS 26.2, macOS Tahoe… | Dec 17, 2025 |
| CVE-2025-43541 | MEDIUM | 4.3 | 32.48% | — | 26 | A type confusion issue was addressed with improved state handling. This issue is fixed in Safari 26.2, iOS 18.7.3 and iP… | Dec 17, 2025 |
| CVE-2025-43536 | MEDIUM | 4.3 | 0.56% | — | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.2, iOS 18.7.3 and… | Dec 17, 2025 |
| CVE-2025-43535 | MEDIUM | 4.3 | 0.80% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3,… | Dec 17, 2025 |
| CVE-2025-43533 | MEDIUM | 5.7 | 0.32% | — | 26 | The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.2 and i… | Dec 17, 2025 |
| CVE-2025-43531 | LOW | 3.1 | 0.45% | — | 26 | A race condition was addressed with improved state handling. This issue is fixed in Safari 26.2, iOS 18.7.3 and iPadOS 1… | Dec 17, 2025 |
| CVE-2025-43529 | HIGH | 8.8 | 8.58% | KEV | 26 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.2, iOS 18.7.3 and… | Dec 17, 2025 |
| CVE-2025-43526 | CRITICAL | 9.8 | 0.52% | — | 26 | This issue was addressed with improved URL validation. This issue is fixed in Safari 26.2, macOS Tahoe 26.2. On a Mac wi… | Dec 17, 2025 |
| CVE-2025-43514 | MEDIUM | 5.5 | 0.17% | — | 26 | The issue was addressed with improved handling of caches. This issue is fixed in macOS Tahoe 26.2. An app may be able to… | Dec 17, 2025 |
| CVE-2025-43501 | MEDIUM | 4.3 | 0.71% | — | 26 | A buffer overflow issue was addressed with improved memory handling. This issue is fixed in Safari 26.2, iOS 18.7.3 and … | Dec 17, 2025 |
| CVE-2025-43428 | CRITICAL | 9.8 | 0.71% | — | 26 | A configuration issue was addressed with additional restrictions. This issue is fixed in iOS 26.2 and iPadOS 26.2, macOS… | Dec 17, 2025 |
| CVE-2025-43506 | HIGH | 7.5 | 0.43% | — | 26 | A logic error was addressed with improved error handling. This issue is fixed in macOS Tahoe 26.1. iCloud Private Relay … | Dec 12, 2025 |
| CVE-2025-43497 | MEDIUM | 5.2 | 0.14% | — | 26 | An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Tahoe 26.1. An app may … | Dec 12, 2025 |
| CVE-2025-43473 | MEDIUM | 5.5 | 0.17% | — | 26 | This issue was addressed with improved state management. This issue is fixed in macOS Tahoe 26.1. An app may be able to … | Dec 12, 2025 |
| CVE-2025-43471 | MEDIUM | 5.5 | 0.17% | — | 26 | The issue was addressed with improved checks. This issue is fixed in macOS Tahoe 26.1. An app may be able to access sens… | Dec 12, 2025 |
| CVE-2025-43470 | MEDIUM | 5.5 | 0.12% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.1. A standard user… | Dec 12, 2025 |
| CVE-2025-43467 | HIGH | 7.8 | 0.17% | — | 26 | This issue was addressed with improved checks. This issue is fixed in macOS Tahoe 26.1. An app may be able to gain root … | Dec 12, 2025 |
| CVE-2025-43466 | MEDIUM | 5.5 | 0.20% | — | 26 | An injection issue was addressed with improved validation. This issue is fixed in macOS Tahoe 26.1. An app may be able t… | Dec 12, 2025 |
| CVE-2025-43465 | MEDIUM | 5.5 | 0.18% | — | 26 | A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in m… | Dec 12, 2025 |
| CVE-2025-43464 | MEDIUM | 6.5 | 0.35% | — | 26 | A denial-of-service issue was addressed with improved input validation. This issue is fixed in macOS Tahoe 26.1. Visitin… | Dec 12, 2025 |
| CVE-2025-43463 | MEDIUM | 5.5 | 0.20% | — | 26 | A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in m… | Dec 12, 2025 |
| CVE-2025-43461 | MEDIUM | 5.5 | 0.18% | — | 26 | This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Tahoe 26.1. An app may be ab… | Dec 12, 2025 |
| CVE-2025-43406 | MEDIUM | 5.5 | 0.18% | — | 26 | A logic issue was addressed with improved restrictions. This issue is fixed in macOS Tahoe 26.1. An app may be able to a… | Dec 12, 2025 |
| CVE-2025-43404 | LOW | 3.3 | 0.14% | — | 26 | A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Tahoe 26.1. An app … | Dec 12, 2025 |
| CVE-2025-43402 | HIGH | 7.8 | 0.20% | — | 26 | The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.4, macOS Sonoma 14.8.4,… | Dec 12, 2025 |
| CVE-2025-43393 | MEDIUM | 5.2 | 0.14% | — | 26 | A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Tahoe 26.1. An app … | Dec 12, 2025 |
| CVE-2025-43388 | MEDIUM | 5.5 | 0.20% | — | 26 | An injection issue was addressed with improved validation. This issue is fixed in macOS Tahoe 26.1. An app may be able t… | Dec 12, 2025 |
| CVE-2025-43381 | MEDIUM | 5.5 | 0.18% | — | 26 | This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Tahoe 26.1. A malicious app ma… | Dec 12, 2025 |
| CVE-2025-43351 | MEDIUM | 5.5 | 0.15% | — | 26 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.1. An app may be a… | Dec 12, 2025 |
| CVE-2025-14174 | HIGH | 8.8 | 22.72% | KEV | 26 | Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 143.0.7499.110 allowed a remote attacker to perfor… | Dec 12, 2025 |
| CVE-2025-43357 | LOW | 3.3 | 0.22% | — | 26 | This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 18.7 and iPadOS 18… | Sep 15, 2025 |
| CVE-1999-0524 | MEDIUM | 4.0 | 31.59% | — | 26 | ICMP information such as (1) netmask and (2) timestamp is allowed from arbitrary hosts. | Aug 1, 1997 |
Frequently asked questions
Is macOS 26 end of life?
No. macOS 26.x is still supported. It continues to receive security patches and bug fixes.
What CVEs affect macOS 26?
There are 301 CVEs tracked for macOS 26.x, including 6 critical severity issues and 3 listed in the CISA Known Exploited Vulnerabilities catalog. See the full list above with CVSS and EPSS scores.
What is the latest macOS 26 version?
The latest macOS 26.x patch release is 26.5.2, released on June 29, 2026. Always run the latest patch to benefit from all security fixes.
When was macOS 26 first released?
macOS 26.0 was initially released on September 15, 2025. See the full version timeline in the table above.
Is it safe to run macOS 26 in production?
macOS 26 is still supported and safe for production use. Ensure you are running the latest patch version (26.5.2) to have all security fixes applied.
Data sourced from endoflife.date · CVE data from NVD · EPSS from FIRST.org · KEV from CISA
