Apple security patch release for CVE-2026-86950
Security Patch Release
Summary
Hide ▲
Show ▼
Apple released security updates for older iOS, iPadOS, and macOS branches to fix CVE-2026-86950, a flaw that could expose devices to arbitrary code execution. The issue is an out-of-bounds write in CoreGraphics that can be triggered by a maliciously crafted file. Apple shipped the fixes in iOS 26.7.1, iPadOS 26.7.1, macOS Tahoe 26.7.1, and macOS Sequoia 15.8.1. The company said the problem may have been used in an extremely sophisticated attack against specific targeted individuals.
Related Happenings
Apple security patch release for CVE-2026-43810
Security Patch Release
H score15
First: 28.07.2026 17:19
Last: 28.07.2026 17:19
Sources 1
About this happening:
Apple released security patches on Monday for dozens of vulnerabilities across its operating systems and browser stack. The update set spans iOS 26.6, iPadOS 26....
Apple security patch release for CVE-2026-43810
Security Patch ReleaseAbout this happening: Apple released security patches on Monday for dozens of vulnerabilities across its operating systems and browser stack. The update set spans iOS 26.6, iPadOS 26....
Apple iOS, macOS, and Safari security updates (multiple vulnerabilities)
Security Patch Release
H score33
First: 30.06.2026 10:15
Last: 30.06.2026 10:15
Sources 1
About this happening:
Apple released security updates for iOS, macOS, and Safari that fix over three dozen flaws, including four WebKit vulnerabilities. The update bundle covers...
Apple iOS, macOS, and Safari security updates (multiple vulnerabilities)
Security Patch ReleaseAbout this happening: Apple released security updates for iOS, macOS, and Safari that fix over three dozen flaws, including four WebKit vulnerabilities. The update bundle covers...
Apple iOS 18.7.7 security update expansion for DarkSword
Security Patch Release
H score41
First: 02.04.2026 00:50
Last: 02.04.2026 00:50
Sources 1
About this happening:
Apple expanded iOS 18.7.7 availability to more older iPhones and iPads on April 1, 2026, letting devices that stay on iOS 18 receive protections against the acti...
Apple iOS 18.7.7 security update expansion for DarkSword
Security Patch ReleaseAbout this happening: Apple expanded iOS 18.7.7 availability to more older iPhones and iPads on April 1, 2026, letting devices that stay on iOS 18 receive protections against the acti...
Coruna watering-hole and fake-site exploitation campaign
Campaign
H score44
First: 26.03.2026 13:07
Last: 26.03.2026 13:07
Sources 1
About this happening:
A suspected Russia-aligned nation-state actor is using Coruna in watering-hole attacks in Ukraine and a mass exploitation campaign, expanding the kit’s abuse beyon...
Coruna watering-hole and fake-site exploitation campaign
CampaignAbout this happening: A suspected Russia-aligned nation-state actor is using Coruna in watering-hole attacks in Ukraine and a mass exploitation campaign, expanding the kit’s abuse beyon...
Apple iOS outdated-device exploit-kit mitigation advisory
Advisory/Mitigation
H score35
First: 20.03.2026 07:16
Last: 20.03.2026 07:16
Sources 1
About this happening:
Apple is sending Lock Screen notifications to outdated iPhones and iPads after detecting active web-based attacks, urging users to install updates. The latest noti...
Apple iOS outdated-device exploit-kit mitigation advisory
Advisory/MitigationAbout this happening: Apple is sending Lock Screen notifications to outdated iPhones and iPads after detecting active web-based attacks, urging users to install updates. The latest noti...
Timeline
-
28.09.2026 22:18 2 articles · 1h ago
Apple releases fixes for CVE-2026-86950 in older iOS, iPadOS, and macOS versions
Initial DisclosureApple released security updates for older versions of iOS, iPadOS, and macOS to address CVE-2026-86950, an out-of-bounds write in CoreGraphics that could lead to arbitrary code execution when processing a maliciously crafted file. Apple said the issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 27, and it credited Meta Product Security with discovering and reporting the issue. The fixes were shipped for iOS 26.7.1, iPadOS 26.7.1, macOS Tahoe 26.7.1, and macOS Sequoia 15.8.1.
Show sources
- Apple Patches CoreGraphics Flaw Possibly Exploited in Targeted Attacks — thehackernews.com — 28.09.2026 22:18
- Apple Patches CoreGraphics Flaw Possibly Exploited in Targeted Attacks — thehackernews.com — 28.09.2026 22:18