cbcvebase.

Apple tvOS 18.1 vulnerabilities

2,371 known vulnerabilities affecting apple/tvos at version 18.1.

Total CVEs
2,371
CISA KEV
41
actively exploited
Public exploits
209
Exploited in wild
78
Severity breakdown
CRITICAL149HIGH1258MEDIUM837LOW59UNKNOWN68

Vulnerabilities

Page 2 of 20
CVE-2026-64740P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-64740 CVE-2026-64740: A parsing issue in the handling of directory paths was addressed with improved path validation. This A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6. A malicious app may be able to break out of its sandbox.
nvd
CVE-2026-64763P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-64763 CVE-2026-64763: An out-of-bounds write issue was addressed by removing the vulnerable code. This issue is fixed in i An out-of-bounds write issue was addressed by removing the vulnerable code. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution.
nvd
CVE-2026-64765P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-64765 CVE-2026-64765: An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6 an An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution.
nvd
CVE-2026-64729P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-64729 CVE-2026-64729: A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26. A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to cause unexpected system termination.
nvd
CVE-2026-43796P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-43796 CVE-2026-43796: This issue was addressed with improved data protection. This issue is fixed in iOS 26.6 and iPadOS 2 This issue was addressed with improved data protection. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to access sensitive user data.
nvd
CVE-2026-64742P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-64742 CVE-2026-64742: This issue was addressed by using HTTPS when sending information over the network. This issue is fix This issue was addressed by using HTTPS when sending information over the network. This issue is fixed in iOS 26.6 and iPadOS 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to access sensitive user data.
nvd
CVE-2026-43769P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-43769 CVE-2026-43769: An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6 an An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to cause unexpected system termination.
nvd
CVE-2026-64743P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-64743 CVE-2026-64743: An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.6 An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to access sensitive user data.
nvd
CVE-2026-64768P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-64768 CVE-2026-64768: An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in iOS An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6. A remote attacker may cause an unexpected app termination.
nvd
CVE-2026-64719P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-64719 CVE-2026-64719: An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Sa An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content may lead to an unexpected Safari crash.
nvd
CVE-2026-64771P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-64771 CVE-2026-64771: A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and i A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6. A remote attacker may be able to cause unexpected application termination or heap corruption.
nvd
CVE-2026-64747P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-64747 CVE-2026-64747: A buffer overflow was addressed with improved size validation. This issue is fixed in iOS 26.6 and i A buffer overflow was addressed with improved size validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2026-64730P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-64730 CVE-2026-64730: The issue was addressed with improved UI. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26 The issue was addressed with improved UI. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Visiting a website that frames malicious content may lead to UI spoofing.
nvd
CVE-2026-64733P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-64733 CVE-2026-64733: This issue was addressed with improved data protection. This issue is fixed in iOS 26.6 and iPadOS 2 This issue was addressed with improved data protection. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to fingerprint the user.
nvd
CVE-2026-64772P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-64772 CVE-2026-64772: An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iO An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6. A remote attacker may be able to cause unexpected application termination or heap corruption.
nvd
CVE-2026-43730P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-43730 CVE-2026-43730: A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26.6 and A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to fingerprint the user.
nvd
CVE-2026-43817P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-43817 CVE-2026-43817: An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 26.6 a An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to cause unexpected system termination.
nvd
CVE-2026-64693P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-64693 CVE-2026-64693: A type confusion issue was addressed with improved checks. This issue is fixed in iOS 26.6 and iPadO A type confusion issue was addressed with improved checks. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing a maliciously crafted image may lead to a denial-of-service.
nvd
CVE-2026-64766P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-64766 CVE-2026-64766: An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6 an An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution.
nvd
CVE-2026-64700P4UNKNOWNfixed in 26.62026-07-27
CVE-2026-64700 CVE-2026-64700: A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26. A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to cause unexpected system termination.
nvd
Apple tvOS 18.1 vulnerabilities | cvebase