VULNERABILITY INTELLIGENCE

CVE index

Use CVSS, EPSS, CISA KEV, affected-version data, and source evidence as separate signals for prioritization.

NVD data is used under its public data terms. This service is not endorsed or certified by NVD.
17,661 CVE recordsPage 70 of 1178
ReviewHigh
CVE-2026-64747

Apple iOS and iPadOS, macOS, tvOS

A buffer overflow was addressed with improved size validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to execute arbitrary code with kernel privileges.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-64746

Apple iOS and iPadOS, macOS, visionOS

An authorization issue was addressed with improved validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, visionOS 26.6, watchOS 26.6. An app may be able to add contacts without user authorization.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-64740

Apple iOS and iPadOS, macOS, tvOS

A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6. A malicious app may be able to break out of its sandbox.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-64739

Apple iOS and iPadOS, macOS, tvOS

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An attacker may be able to cause unexpected app termination.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-64738

Apple macOS, macos

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A malicious app may be able to break out of its sandbox.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-64737

Apple macOS, macos

An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A malicious app may be able to break out of its sandbox.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-64733

Apple iOS and iPadOS, macOS, tvOS

This issue was addressed with improved data protection. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to fingerprint the user.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-64731

Apple macOS, macos

A path handling issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Tahoe 26.6. A malicious app may be able to break out of its sandbox.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-64729

Apple iOS and iPadOS, macOS, tvOS

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to cause unexpected system termination.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-64727

Apple macOS, tvOS, macos

A type confusion issue was addressed with improved memory handling. This issue is fixed in macOS Tahoe 26.6, tvOS 26.6. An app may be able to cause unexpected system termination.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-64726

Apple iOS and iPadOS, macOS, tvOS

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An attacker in physical proximity may be able to corrupt process memory.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-64725

Apple iOS and iPadOS, macOS, tvOS

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to cause a denial-of-service.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-64720

Apple iOS and iPadOS, macOS, tvOS

A race condition was addressed with improved state handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, watchOS 26.6. An app may be able to cause unexpected system termination.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-64719

Apple Safari, iOS and iPadOS, macOS

An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content may lead to an unexpected Safari crash.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-64716

Apple iOS and iPadOS, macOS, tvOS

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing a maliciously crafted image may corrupt process memory.

The CVSS severity warrants an early asset and exposure review.