Medium severity5.9NVD Advisory· Published Aug 17, 2026· Updated Sep 14, 2026
CVE-2026-65329
CVE-2026-65329
Description
An authentication issue was addressed with improved state management. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, iOS 27 and iPadOS 27. An attacker in a privileged network position may be able to bypass IPSec authentication and intercept network traffic.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*range: <26.6.1
- (no CPE)range: before 26.6.1, before 27
- Range: before 26.6.1, before 27
Patches
Vulnerability mechanics
References
2- support.apple.com/en-us/148282nvdRelease NotesVendor Advisory
- support.apple.com/en-us/149034nvd
News mentions
5- Apple Updates Everything, (Mon, Sep 14th)SANS Internet Storm Center · Sep 14, 2026
- Apple plugs image-processing hole ripe for spyware abuseThe Register Security · Aug 18, 2026
- Apple Fixes 28 Security Vulnerabilities Across macOS, iOS, and iPadOSCyber Security News · Aug 18, 2026
- Apple iOS: 25 Vulnerabilities Patched in Same-Day Disclosure BatchVypr Intelligence · Aug 17, 2026
- Apple Patches iOS and macOS, (Mon, Aug 17th)SANS Internet Storm Center · Aug 17, 2026