5.5
/ 10
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Description
An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, iOS 18.7.5 and iPadOS 18.7.5. An app may be able to access sensitive user data.
Basic Information
ID
CVE-2026-20678
Source
apple
Published
Feb 11, 2026 at 22:58
Modified
Feb 13, 2026 at 19:07
Affected Product
Vendor
Apple
Product
iOS and iPadOS
Version
unspecified
Affected Versions
Apple iOS and iPadOS unspecified
Apple iOS and iPadOS unspecified
Apple iOS and iPadOS unspecified