Apple released patches for 90+ vulnerabilities across iOS, macOS, and other platforms…
Apple released patches for 90+ vulnerabilities across iOS, macOS, and other platforms, including critical flaws allowing arbitrary code execution and privilege escalation.
Apple has disclosed multiple vulnerabilities affecting iOS, iPadOS, macOS, tvOS, watchOS, and visionOS. The most severe vulnerabilities permit arbitrary code execution with kernel privileges and root-level privilege escalation. Several flaws enable attackers to execute code through maliciously crafted images, media files, or web content. Kernel memory corruption and information disclosure vulnerabilities are also present. Additional issues include sandbox escapes, privacy bypass mechanisms, Gatekeeper bypasses, and various denial-of-service conditions. The vulnerabilities span core OS components, WebKit, image processing libraries, media frameworks, and system services. Exploitation could allow attackers to install programs, modify or delete data, create accounts with full privileges, access sensitive user information, or cause system instability. Users with administrative rights face higher risk than those with restricted privileges.
Apple has released updates across all affected product lines, with version numbers ranging from iOS/iPadOS 15.8.8 through 26.5 and macOS versions from Sonoma 14.8.7 through Tahoe 26.5. No active exploitation has been reported. The advisory recommends immediate patching after testing, implementing least-privilege access controls, enabling anti-exploitation features, restricting web content, deploying endpoint detection solutions, and conducting security awareness training. Organizations should prioritize updates for internet-facing systems and devices with administrative access.
Mentioned in this report
Source reporting: https://www.cisecurity.org/advisory/multiple-vulnerabilities-in-apple-products-could-allow-for-arbitrary-code-execution_2026-047
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free