VYPR
Medium severity5.5NVD Advisory· Published Mar 25, 2026· Updated Jun 17, 2026

CVE-2026-28870

CVE-2026-28870

Description

An information leakage was addressed with additional validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4, tvOS 26.4, visionOS 26.4, watchOS 26.4. An app may be able to access sensitive user data.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

17
  • Apple Inc./iOSllm-fuzzy
    Range: before 18.7.9
  • Apple Inc./Ipadosllm-fuzzy2 versions
    before 18.7.9+ 1 more
    • (no CPE)range: before 18.7.9
    • cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*range: <26.4
  • Apple Inc./macOSllm-fuzzy
    Range: before 26.4
  • Apple Inc./tvOSllm-fuzzy
    Range: before 26.4
  • Apple Inc./Visionosllm-fuzzy3 versions
    before 26.4+ 2 more
    • (no CPE)range: before 26.4
    • (no CPE)range: 0
    • cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*range: <26.4
  • Apple Inc./watchOSllm-fuzzy3 versions
    before 26.4+ 2 more
    • (no CPE)range: before 26.4
    • (no CPE)range: 0
    • cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*range: <26.4
  • Apple Inc./macOSv52 versions
    0+ 1 more
    • (no CPE)range: 0
    • cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*range: <26.4
  • Apple Inc./tvOSv52 versions
    0+ 1 more
    • (no CPE)range: 0
    • cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*range: <26.4
  • cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
    Range: <26.4
  • Range: 0

Patches

Vulnerability mechanics

References

6

News mentions

1