Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

Safari and Apple devices may leak user info to malicious websites

CVE-2026-20691
Summary

A security update in Safari and Apple devices fixes a bug that could allow malicious websites to learn more about you, such as your device and browser settings. This could be used to target you with tailored ads or phishing attacks. To stay safe, make sure your Apple devices are updated to the latest software versions.

Original title
An authorization issue was addressed with improved state management. This issue is fixed in Safari 26.4, iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4, visionOS 26.4, watchOS 26.4. A maliciously craft...
Original description
An authorization issue was addressed with improved state management. This issue is fixed in Safari 26.4, iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4, visionOS 26.4, watchOS 26.4. A maliciously crafted webpage may be able to fingerprint the user.
Published: 25 Mar 2026 · Updated: 25 Mar 2026 · First seen: 25 Mar 2026