CVE-2026-43813

Summary

A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. A maliciously crafted app may be able to bypass code signing enforcement.

Affected Software

VendorProductVersion RangeStatus
AppleiOS and iPadOS0 < 26.6affected
ApplemacOS0 < 26.6affected
AppletvOS0 < 26.6affected
ApplevisionOS0 < 26.6affected
ApplewatchOS0 < 26.6affected

Weaknesses

  • A maliciously crafted app may be able to bypass code signing enforcement

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References