Find notable cyber news and cases, enriched with sources, timelines, and signals.

Apple security patch release for CVE-2026-20700

Security Patch Release
First reported
Last updated
Happening score
H score 46
3 unique sources, 3 articles

Summary

Hide ▲

Apple released security updates for CVE-2026-20700, a dyld arbitrary code execution flaw affecting iOS, iPadOS, macOS, tvOS, watchOS, and visionOS. The release matters because Apple said the issue was exploited in an extremely sophisticated attack against specific individuals. The fixes cover iOS 18.7.5, iPadOS 18.7.5, macOS Tahoe 26.3, tvOS 26.3, watchOS 26.3, and visionOS 26.3. Apple also tied the same incident report to CVE-2025-14174 and CVE-2025-43529.

Related Happenings

IOS 26.5 beta rolls out default end-to-end encrypted RCS messaging on iPhone and Android

Security Tool/Service
First: 12.05.2026 08:18 Last: 12.05.2026 08:18 Sources 1

About this happening: Apple's **iOS 26.5** beta adds **default end-to-end encrypted RCS** messaging for **iPhone** and **Android** users, strengthening privacy in cross-platform chats. The rollout cove...

PackageKit 1.3.5 security update (CVE-2026-41651)

Security Patch Release
First: 24.04.2026 20:28 Last: 24.04.2026 20:28 Sources 1

About this happening: **PackageKit version 1.3.5** was released to fix **CVE-2026-41651**, closing a **local privilege-escalation** path that could let Linux users gain **root permissions**. The update...

Apple out-of-band iOS/iPadOS security updates (CVE-2026-28950)

Security Patch Release
First: 22.04.2026 23:58 Last: 22.04.2026 23:58 Sources 1

About this happening: **Apple** released **out-of-band security updates** for **iPhone and iPad** on **April 22, 2026** to fix **CVE-2026-28950**. The patch addresses a **Notification Services** flaw t...

Latest development: 23.04.2026 11:50

Apple issued **iOS 26.4.2**, **iPadOS 26.4.2**, **iOS 18.7.8**, and **iPadOS 18.7.8** on **2026-04-23** to close **CVE-2026-28950**, which could preserve deleted-message notifications on affected devices.

OpenAI rotates macOS code-signing certificates after supply-chain exposure

Security Tool/Service
First: 13.04.2026 20:39 Last: 13.04.2026 20:39 Sources 1

About this happening: **OpenAI** is **rotating and revoking macOS code-signing certificates**, forcing users of **ChatGPT Desktop**, **Codex**, **Codex CLI**, and **Atlas** to update so trust in signed...

Apple iOS 18.7.7 security update expansion for DarkSword

Security Patch Release
First: 02.04.2026 00:50 Last: 02.04.2026 00:50 Sources 1

About this happening: Apple expanded **iOS 18.7.7** availability to more older **iPhones and iPads** on **April 1, 2026**, letting devices that stay on **iOS 18** receive protections against the **acti...

Timeline

  1. 12.02.2026 09:48 2 articles · 3mo ago

    Apple releases iOS 26.3 and related patches for CVE-2026-20700

    Mitigation Patch Update

    Apple released iOS 26.3, iPadOS 26.3, macOS Tahoe 26.3, tvOS 26.3, watchOS 26.3, visionOS 26.3, and Safari 26.3 with fixes for CVE-2026-20700, while older branches iOS 18.7.5, iPadOS 18.7.5, macOS Sequoia 15.7.4, and macOS Sonoma 14.8.4 also received security updates. The iOS and iPadOS updates resolve nearly 40 vulnerabilities, the macOS Tahoe refresh fixes over 50 security defects, and Safari 26.3 includes fixes for eight security defects.

    Show sources
  2. 12.02.2026 07:39 2 articles · 3mo ago

    Apple releases fixes for CVE-2026-20700

    Initial Disclosure

    Apple released iOS, iPadOS, macOS Tahoe, tvOS, watchOS, and visionOS updates to fix CVE-2026-20700, a memory corruption issue in dyld, after reports that the flaw may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. Google Threat Analysis Group (TAG) was credited with discovering and reporting the bug, and Apple also issued related fixes for CVE-2025-14174 and CVE-2025-43529, including updates for older iOS, iPadOS, macOS, and Safari releases.

    Show sources
  3. 12.02.2026 07:39 2 articles · 3mo ago

    Apple releases fixes for CVE-2026-20700

    Initial Disclosure

    Apple released iOS, iPadOS, macOS Tahoe, tvOS, watchOS, and visionOS updates to fix CVE-2026-20700, a memory corruption issue in dyld, after reports that the flaw may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. Google Threat Analysis Group (TAG) was credited with discovering and reporting the bug, and Apple also issued related fixes for CVE-2025-14174 and CVE-2025-43529, including updates for older iOS, iPadOS, macOS, and Safari releases.

    Show sources
  4. 12.02.2026 03:06 1 articles · 3mo ago

    Apple releases security updates for CVE-2026-20700

    Mitigation Patch Update

    Apple released security updates that fix CVE-2026-20700, a dyld arbitrary code execution zero-day affecting iOS, iPadOS, macOS, tvOS, watchOS, and visionOS. Apple said the flaw had been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26, and tied the same report to CVE-2025-14174 and CVE-2025-43529.

    Show sources