CVE-2026-86886
בינונית 5.5
תיאור (מקור, אנגלית)
A path traversal issue was addressed with improved input validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, watchOS 27. An app may be able to modify protected system files.
מדדים
- CVSS 3.1
-
5.5 (MEDIUM)
מקור הציון: CNA
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N - EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-28/9/2026
- CWE
- CWE-22
מוצרים מושפעים
apple: ipados; apple: iphone os; apple: watchos
קישורים
- https://support.apple.com/en-us/149034 Vendor Advisory
- https://support.apple.com/en-us/149037 Vendor Advisory
- https://support.apple.com/en-us/149041 Vendor Advisory