CVE-2026-20661
EUVD-2026-623511.02.2026, 23:16
An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, iOS 18.7.5 and iPadOS 18.7.5. An attacker with physical access to a locked device may be able to view sensitive user information.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| apple | ipados | 𝑥 < 18.7.5 |
| apple | ipados | 26.0 ≤ 𝑥 < 26.3 |
| apple | iphone_os | 𝑥 < 18.7.5 |
| apple | iphone_os | 26.0 ≤ 𝑥 < 26.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration