# Apple patches 80+ flaws across iOS, macOS

Published: 2026-05-12 · Severity: high
Canonical: https://vorant.io/reports/dfd4cb37-1749-5de3-8723-4c4e837c7818/apple-patches-80-flaws-across-ios-macos

> Apple released security updates addressing over 80 vulnerabilities across iOS, iPadOS, macOS, tvOS, watchOS, and visionOS, including multiple kernel privilege escalation flaws and arbitrary code execution issues.

Apple has issued comprehensive security updates for its entire product ecosystem, addressing more than 80 vulnerabilities across iOS, iPadOS, macOS, tvOS, watchOS, and visionOS. The most severe vulnerabilities could allow arbitrary code execution with kernel privileges, with multiple CVEs enabling privilege escalation to root, kernel memory corruption, and sandbox escapes. The affected versions span multiple generations of operating systems, from iOS 15 through iOS 26 and macOS Sonoma through macOS Tahoe.

The vulnerability set includes critical kernel-level flaws that permit apps to execute arbitrary code with kernel privileges (CVE-2026-28819), gain root privileges through multiple vectors (CVE-2026-28951, CVE-2026-28915, CVE-2026-28919, CVE-2026-28976, CVE-2026-28840), and corrupt kernel memory. Additional vulnerabilities affect WebKit rendering, image processing, media file handling, and various system components. Several flaws allow sandbox escapes, privacy bypasses, and access to sensitive user data.

No active exploitation has been reported in the wild. Apple has released patches across all affected product lines, with users urged to update to iOS/iPadOS 26.5, macOS Tahoe 26.5, tvOS 26.5, watchOS 26.5, and visionOS 26.5, along with corresponding patches for legacy versions. The advisory emphasizes applying updates immediately after testing and implementing defense-in-depth controls including least privilege, exploit protection, and application allowlisting.

## Mentioned in this report

- Vulnerabilities: CVE-2025-43524, CVE-2026-28819, CVE-2026-28840, CVE-2026-28915, CVE-2026-28919, CVE-2026-28923, CVE-2026-28925, CVE-2026-28940, CVE-2026-28951, CVE-2026-28972, CVE-2026-28976, CVE-2026-28978, CVE-2026-28990, CVE-2026-28995, CVE-2026-39870, CVE-2026-43661, CVE-2026-43668

Source reporting: https://www.cisecurity.org/advisory/multiple-vulnerabilities-in-apple-products-could-allow-for-arbitrary-code-execution_2026-047

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/dfd4cb37-1749-5de3-8723-4c4e837c7818/apple-patches-80-flaws-across-ios-macos.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
