CVE-2026-86888

Summary

A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. A local app may be able to read a persistent account identifier.

Affected Software

VendorProductVersion RangeStatus
AppleiOS and iPadOS0 < 27affected
ApplemacOS0 < 26.7affected
ApplemacOS0 < 27affected
AppletvOS0 < 27affected
ApplevisionOS0 < 27affected
ApplewatchOS0 < 27affected

Weaknesses

  • A local app may be able to read a persistent account identifier

References