cbcvebase.

Apple Ios 26.3 And Ipados vulnerabilities

46 known vulnerabilities affecting apple/ios_26.3_and_ipados.

Total CVEs
46
CISA KEV
3
actively exploited
Public exploits
3
Exploited in wild
3
Severity breakdown
CRITICAL1HIGH17MEDIUM25LOW3

Vulnerabilities

Page 1 of 3
CVE-2025-14174P1HIGHCVSS 8.8KEVPoCv26.32026-02-11
CVE-2025-14174 [HIGH] CVE-2025-14174: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2025-14174 Component: CoreServices Impact: An app may be able to access sensitive user data Description: An issue existed in the handling of environment variables. This issue was addressed with improved validation.
apple
CVE-2025-43529P1HIGHCVSS 8.8KEVPoCv26.32026-02-11
CVE-2025-43529 [HIGH] CVE-2025-43529: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2025-43529 Component: CoreServices Impact: An app may be able to access sensitive user data Description: An issue existed in the handling of environment variables. This issue was addressed with improved validation.
apple
CVE-2026-20700P1HIGHCVSS 7.8KEVPoCv26.32026-02-11
CVE-2026-20700 [HIGH] CVE-2026-20700: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2026-20700 Component: CoreServices Impact: An app may be able to access sensitive user data Description: An issue existed in the handling of environment variables. This issue was addressed with improved validation.
apple
CVE-2026-20660P3HIGHCVSS 7.5v26.32026-02-11
CVE-2026-20660 [HIGH] CVE-2026-20660: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2026-20660 Component: CFNetwork Impact: A remote user may be able to write arbitrary files Description: A path handling issue was addressed with improved logic.
apple
CVE-2026-20677P3CRITICALCVSS 9.0v26.32026-02-11
CVE-2026-20677 [CRITICAL] CVE-2026-20677: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2026-20677 Component: Messages Impact: A shortcut may be able to bypass sandbox restrictions Description: A race condition was addressed with improved handling of symbolic links.
apple
CVE-2025-59375P3HIGHCVSS 7.5v26.32026-02-11
CVE-2025-59375 [HIGH] CVE-2025-59375: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2025-59375 Component: CVE-2025-59375 Impact: An app may be able to break out of its sandbox Description: A logic issue was addressed with improved checks.
apple
CVE-2026-20615P3HIGHCVSS 7.8v26.32026-02-11
CVE-2026-20615 [HIGH] CVE-2026-20615: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2026-20615 Component: CoreServices Impact: An app may be able to gain root privileges Description: A path handling issue was addressed with improved validation.
apple
CVE-2026-20626P3HIGHCVSS 7.8v26.32026-02-11
CVE-2026-20626 [HIGH] CVE-2026-20626: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2026-20626 Component: Kernel Impact: A malicious app may be able to gain root privileges Description: This issue was addressed with improved checks.
apple
CVE-2026-20667P3HIGHCVSS 7.5v26.32026-02-11
CVE-2026-20667 [HIGH] CVE-2026-20667: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2026-20667 Component: CVE-2025-59375 Impact: An app may be able to break out of its sandbox Description: A logic issue was addressed with improved checks.
apple
CVE-2026-20611P3HIGHCVSS 7.8v26.32026-02-11
CVE-2026-20611 [HIGH] CVE-2026-20611: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2026-20611 Component: CoreAudio Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2026-20652P3HIGHCVSS 7.5v26.32026-02-11
CVE-2026-20652 [HIGH] CVE-2026-20652: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2026-20652 Component: WebKit Impact: A remote attacker may be able to cause a denial-of-service Description: The issue was addressed with improved memory handling.
apple
CVE-2026-20650P3HIGHCVSS 7.5v26.32026-02-11
CVE-2026-20650 [HIGH] CVE-2026-20650: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2026-20650 Component: Bluetooth Impact: An attacker in a privileged network position may be able to perform denial-of-service attack using crafted Bluetooth packets Description: A denial-of-service issue was addressed with improved validation.
apple
CVE-2026-20649P3HIGHCVSS 7.5v26.32026-02-11
CVE-2026-20649 [HIGH] CVE-2026-20649: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2026-20649 Component: Game Center Impact: A user may be able to view sensitive user information Description: A logging issue was addressed with improved data redaction.
apple
CVE-2026-28855P3HIGHCVSS 7.5v26.32026-02-11
CVE-2026-28855 [HIGH] CVE-2026-28855: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2026-28855 Component: Screen Time Impact: An app may be able to access protected user data Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2026-20617P4HIGHCVSS 7.0v26.32026-02-11
CVE-2026-20617 [HIGH] CVE-2026-20617: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2026-20617 Component: CoreServices Impact: An app may be able to gain root privileges Description: A race condition was addressed with improved state handling.
apple
CVE-2026-20636P4MEDIUMCVSS 6.5v26.32026-02-11
CVE-2026-20636 [MEDIUM] CVE-2026-20636: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2026-20636 Component: WebKit Impact: Processing maliciously crafted web content may lead to an unexpected process crash Description: The issue was addressed with improved memory handling.
apple
CVE-2026-20644P4MEDIUMCVSS 6.5v26.32026-02-11
CVE-2026-20644 [MEDIUM] CVE-2026-20644: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2026-20644 Component: WebKit Impact: Processing maliciously crafted web content may lead to an unexpected process crash Description: The issue was addressed with improved memory handling.
apple
CVE-2026-20606P4HIGHCVSS 7.1v26.32026-02-11
CVE-2026-20606 [HIGH] CVE-2026-20606: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2026-20606 Component: UIKit Impact: An app may be able to bypass certain Privacy preferences Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2026-20641P4HIGHCVSS 7.1v26.32026-02-11
CVE-2026-20641 [HIGH] CVE-2026-20641: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2026-20641 Component: StoreKit Impact: An app may be able to identify what other apps a user has installed Description: A privacy issue was addressed with improved checks.
apple
CVE-2026-20628P4HIGHCVSS 7.1v26.32026-02-11
CVE-2026-20628 [HIGH] CVE-2026-20628: iOS 26.3 and iPadOS 26.3 Apple Security Update: About the security content of iOS 26.3 and iPadOS 26.3 Product: iOS 26.3 and iPadOS Version: 26.3 CVE: CVE-2026-20628 Component: Sandbox Impact: An app may be able to break out of its sandbox Description: A permissions issue was addressed with additional restrictions.
apple