CVE-2026-28906
CVSS Score
7.5
EPSS Score
0.0%
EPSS Percentile
0th
This issue was addressed through improved state management. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Sequoia 15.7.7, macOS Sonoma 14.8.7, macOS Tahoe 26.5, visionOS 26.5. An attacker may be able to track users through their IP address.
| Vendor | apple |
| Product | ios and ipados |
| Ecosystems | |
| Industries | Technology |
| Published | May 11, 2026 |
| Last Updated | May 12, 2026 |
Stay Ahead of the Next One
Get instant alerts for apple ios and ipados
Be the first to know when new high vulnerabilities affecting apple ios and ipados are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Apple / iOS and iPadOS
0 < 18.7.9 0 < 26.5
Apple / macOS
0 < 14.8.7 0 < 15.7.7 0 < 26.5
Apple / visionOS
0 < 26.5
References
support.apple.com: https://support.apple.com/en-us/127110 support.apple.com: https://support.apple.com/en-us/127111 support.apple.com: https://support.apple.com/en-us/127115 support.apple.com: https://support.apple.com/en-us/127116 support.apple.com: https://support.apple.com/en-us/127117 support.apple.com: https://support.apple.com/en-us/127120