CVE-2026-64732

Summary

This issue was addressed through improved state management. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.7. An attacker with physical access may be able to access sensitive user data during iPhone Mirroring.

Affected Software

VendorProductVersion RangeStatus
AppleiOS and iPadOS0 < 18.7.10affected
AppleiOS and iPadOS0 < 26.6affected
ApplemacOS0 < 15.7.7affected

Weaknesses

  • An attacker with physical access may be able to access sensitive user data during iPhone Mirroring

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References