Unrated severityNVD Advisory· Published Sep 14, 2026
CVE-2026-43737
CVE-2026-43737
Description
An authorization issue was addressed with improved validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, watchOS 27. An app may be able to access motion data from headphones without user consent.
Affected products
4- Range: 26.7, 27
- Range: Golden Gate 27, 15.8, 26.7
- Range: 27
- Range: 27
Patches
Vulnerability mechanics
References
7News mentions
1- Apple Updates Everything, (Mon, Sep 14th)SANS Internet Storm Center · Sep 14, 2026