Medium severity5.5NVD Advisory· Published Feb 11, 2026· Updated Jun 17, 2026
CVE-2026-20638
CVE-2026-20638
Description
A logic issue was addressed with improved checks. This issue is fixed in iOS 26.3 and iPadOS 26.3. A user with Live Caller ID app extensions turned off could have identifying information leaked to the extensions.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5= 26.3+ 1 more
- (no CPE)range: = 26.3
- cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*range: <26.3
- Range: = 26.3
- Range: 0
Patches
Vulnerability mechanics
References
1- support.apple.com/en-us/126346nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.