CVE-2026-20676
EUVD-2026-623011.02.2026, 23:16
This issue was addressed through improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, Safari 26.3, macOS Tahoe 26.3, visionOS 26.3. A website may be able to track users through Safari web extensions.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| apple | safari | 𝑥 < 26.3 |
| apple | ipados | 𝑥 < 26.3 |
| apple | iphone_os | 𝑥 < 26.3 |
| apple | macos | 𝑥 < 26.3 |
| apple | visionos | 𝑥 < 26.3 |
𝑥
= Vulnerable software versions