VYPR
High severity7.5NVD Advisory· Published May 11, 2026· Updated Jun 17, 2026

CVE-2026-28872

CVE-2026-28872

Description

A resource exhaustion issue was addressed with improved input validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.4 and iPadOS 26.4. A remote attacker may be able to cause a denial-of-service.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Apple Inc./Ipados2 versions
    cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*range: <18.7.9
    • (no CPE)range: up to 18.7.9, up to 26.4
  • cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
    Range: <18.7.9
  • Apple Inc./iOSllm-fuzzy
    Range: up to 18.7.9, up to 26.4

Patches

Vulnerability mechanics

References

2

News mentions

1