CVE-2026-65353: Security vulnerability
An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6. An app may be able to access sensitive user data.
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
iOSto a version that resolves this vulnerability.Fixed in 26.6 - Upgrade
Upgrade
iPadOSto a version that resolves this vulnerability.Fixed in 26.6 - Upgrade
Upgrade
macOS Tahoeto a version that resolves this vulnerability.Fixed in 26.6
Event History
Frequently Asked Questions
Which systems need to be updated to address this issue?
The issue is fixed in iOS 26.6, iPadOS 26.6, and macOS Tahoe 26.6. Systems running earlier affected versions should be updated to the listed fixed release.
What level of access would an attacker need to exploit this issue?
An attacker would need to run an app on the affected device, because the reported impact is that an app may be able to access sensitive user data.
What is the mitigation if an update cannot be installed immediately?
No workaround or temporary mitigation is provided in the available information. Prioritize installing the applicable fixed operating system update.