watchOS: 25 Vulnerabilities Patched in Same-Day Apple Security Update
Apple patched 25 vulnerabilities in watchOS on September 14, 2026, affecting privacy, data access, and system stability.

Key findings
- Apple patched 25 vulnerabilities in watchOS disclosed on September 14, 2026.
- Vulnerabilities include privacy risks, data access issues, and system stability flaws.
- Fixes are available in watchOS 27.
- No vulnerabilities were reported as actively exploited in the wild.
- Issues range from out-of-bounds reads/writes to logic flaws and race conditions.
On September 14, 2026, Apple Inc. released a significant security update addressing a batch of 25 vulnerabilities in watchOS, alongside updates for iOS, iPadOS, macOS, tvOS, and visionOS. The disclosures, all published on the same day, highlight a range of issues including memory corruption, privacy concerns, and potential data access vulnerabilities. These vulnerabilities, patched in watchOS 27, represent a broad spectrum of security weaknesses across the operating system.
Several vulnerabilities fall into the category of permissions and authorization issues. CVE-2026-86891, for instance, an authorization flaw, could allow an app to access Bluetooth device information. Similarly, CVE-2026-86888 and CVE-2026-84603, both permissions issues, could permit local apps to read persistent account identifiers or access sensitive user data, respectively. CVE-2026-84628, another authorization issue, might enable a sandboxed app to access the System Keychain. Furthermore, CVE-2026-84609, a permissions issue, could allow an app to modify protected system files.
Privacy concerns are also prominent within this batch. CVE-2026-86904, a privacy issue, could enable an app to track users across apps and websites without permission. CVE-2026-84629 and CVE-2026-84625, both related to user fingerprinting, could allow apps to identify users without their consent. CVE-2026-84600, a malicious shortcut could send messages without user confirmation. CVE-2026-84586, a malicious application could leak sensitive user information. CVE-2026-84527, an app may be able to access sensitive user data.
Memory-related vulnerabilities were also addressed. CVE-2026-86876 and CVE-2026-84575, both out-of-bounds write issues, could allow a sandboxed process to circumvent sandbox restrictions or lead to unexpected app termination, respectively. CVE-2026-84622, a memory initialization issue, could allow an app with root privileges to read uninitialized kernel memory. CVE-2026-84546, another out-of-bounds write, could lead to memory corruption. CVE-2026-84571, a buffer overflow, could lead to unexpected app termination. CVE-2026-84530, an information disclosure issue, could allow an app to disclose kernel memory.
Other notable vulnerabilities include CVE-2026-84620 and CVE-2026-84546, both integer overflows or out-of-bounds writes that could lead to memory corruption when processing maliciously crafted 3D models. CVE-2026-84607, a race condition, could allow a sandboxed app to execute arbitrary code with kernel privileges. CVE-2026-84533, a cryptographic issue, could allow an attacker to modify network traffic. CVE-2026-84551, a logic issue, could allow an app to bypass network restrictions. CVE-2026-84635, a logic issue, could lead to an unexpected process termination when processing maliciously crafted web content. CVE-2026-84626, an information disclosure issue, could allow an app to identify installed applications.
According to related security reporting, none of these vulnerabilities were reported as actively exploited in the wild. The fixes for these issues are included in watchOS 27, with some related fixes also appearing in iOS 26.7, iOS 27, iPadOS 26.7, iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, and visionOS 27.
This batch of vulnerabilities underscores the importance of timely updates for Apple devices. Users of watchOS are advised to update to watchOS 27 as soon as possible to mitigate these risks, which range from unauthorized data access and tracking to potential system-level compromise. The broad nature of these fixes across multiple Apple operating systems indicates a coordinated disclosure and patching effort by Apple.