Appsecure logo

CVE-2026-20617: High Vulnerability in Apple iOS and macOS

A high-severity vulnerability in Apple iOS and macOS could allow apps to gain root privileges due to a race condition. Immediate patching is crucial to mitigate risks associated with this flaw.

HIGHCVSS 7 · Published February 11, 2026

Not a customer? See how AppSecure simulates real world attacks to protect your infrastructure.

Speak to Experts

CVE-2026-20617 is a high-severity vulnerability affecting multiple Apple operating systems, including iOS, iPadOS, macOS, tvOS, visionOS, and watchOS. This vulnerability allows an app to potentially gain root privileges due to a race condition that was identified in state handling. The flaw has been addressed in the latest versions of Apple’s operating systems, specifically iOS 26.3, iPadOS 26.3, macOS Sonoma 14.8.4, macOS Tahoe 26.3, tvOS 26.3, visionOS 26.3, and watchOS 26.3.

The CVSS score for this vulnerability is 7.0, indicating a high level of severity. The implications of this vulnerability are significant, as it could lead to unauthorized access to sensitive data and system resources. Organizations using affected Apple products are urged to prioritize patching these vulnerabilities immediately to mitigate the associated risks.

Currently, there are no confirmed exploits or public proof of concept (PoC) available for this vulnerability. However, the potential for exploitation remains high due to the nature of the flaw. Thus, organizations should address this vulnerability as part of their immediate patch cycle.

Disclaimer: This content was generated using AI. While we strive for accuracy, please verify critical information with official sources.

Latest CVEs. Recently published vulnerabilities from the NVD database.

View all vulnerabilities
CVE IDSeverity
CVE-2025-65418HIGH
CVE-2025-65417MEDIUM
CVE-2025-65416MEDIUM
CVE-2025-65415MEDIUM
CVE-2025-61314HIGH

Protect Your Business with Hacker-Focused Approach.