Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
Apple Devices: Sensitive Data Exposed by Improper Path Handling
CVE-2026-28876
Summary
A security issue in Apple's operating systems allowed an app to potentially access sensitive user data. This issue has been fixed in various versions of iOS, iPadOS, macOS, and visionOS. Update to the latest version of your operating system to ensure your device's security has been patched.
Original title
A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 26.4, macOS Sequoia 15.7.5, ...
Original description
A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 26.4, macOS Sequoia 15.7.5, macOS Sonoma 14.8.5, macOS Tahoe 26.4, visionOS 26.4. An app may be able to access sensitive user data.
Published: 25 Mar 2026 · Updated: 25 Mar 2026 · First seen: 25 Mar 2026