Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Endpoint Security

Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe

Apple announced that dozens of vulnerabilities have been patched in each of its operating systems.

Apple patches

Apple announced on Monday that it has released patches for dozens of vulnerabilities discovered recently in its operating systems. 

The company patched 87 vulnerabilities with the release of iOS 26.6 and iPadOS 26.6. 

The flaws can be exploited to access sensitive user data, fingerprint users, cause a DoS condition, execute arbitrary code, delete files, modify the file system, bypass security, add contacts without authorization, spoof the UI, and escalate privileges.

In macOS Tahoe 26.6, Apple fixed 155 vulnerabilities, including ones allowing access to sensitive user data, arbitrary code execution, security bypasses, and DoS attacks.

macOS Sequoia 15.7.8 includes fixes for 138 security holes, while macOS Sonoma 14.8.8 resolves 127 issues.

Many of the vulnerabilities were patched across all of these platforms. 

Advertisement. Scroll to continue reading.

“The one worth a second look is CVE-2026-43810, where Apple notes a remote user may be able to corrupt kernel memory, because remote changes the economics of an attack chain considerably,” commented Adam Boynton, senior enterprise strategy manager at Jamf.

Roughly 100 flaws have been patched by Apple in each of its other operating systems: watchOS, tvOS, and visionOS. 

The latest Safari update fixes nearly a dozen vulnerabilities, including ones that can be exploited to access sensitive user data or crash the browser.

The advisories do not mention in-the-wild exploitation. Additional details are available in Apple’s security advisories. 


Related: Apple Patches Dozens of Vulnerabilities Across iOS, macOS, and Safari

Related: New Exploit Bypasses Apple’s Boot Defenses, Affects Millions of iPhones

Related: Apple Rejected 2 Million App Store Submissions in 2025 for Security and Fraud Prevention

Written By

Eduard Kovacs (@EduardKovacs) is senior managing editor at SecurityWeek. He worked as a high school IT teacher before starting a career in journalism in 2011. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Learn how to address potential risks and not restrict AI adoption in your organization. See what a centralized AI gateway is and how it works in practice.

Register

Join as we decipher the world of zero trust and share war stories on securing an organization by eliminating implicit trust and continuously validating every stage of a digital interaction.

Register

People on the Move

Chip Wentz has been appointed as SVP & CISO at Keurig Dr Pepper Inc.

Lumen Technologies has named Kim Keever as CSO.

Quantum Secure Encryption Corp. has appointed Joseph Hall as CIO.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.