cbcvebase.
CVE-2026-28889
published 2026-03-25

CVE-2026-28889: A permissions issue was addressed with additional restrictions. This issue is fixed in Xcode 26.4. An app may be able to read arbitrary files as root.

medium6.2CVSS 3.1
AVLACLPRNUINSUCHINAN
A permissions issue was addressed with additional restrictions. This issue is fixed in Xcode 26.4. An app may be able to read arbitrary files as root.

Affected

1 ranges
VendorProductVersion rangeFixed in
applexcode< 26.426.4