Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2026-20627


An issue existed in the handling of environment variables. This issue was addressed with improved validation. This issue is fixed in watchOS 26.3, macOS Tahoe 26.3, macOS Sonoma 14.8.4, visionOS 26.3, iOS 26.3 and iPadOS 26.3. An app may be able to access sensitive user data.


Published

2026-02-11T23:16:06.187

Last Modified

2026-02-13T19:58:40.943

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 5.5 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-20

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System apple ipados < 26.3 Yes
Operating System apple iphone_os < 26.3 Yes
Operating System apple macos < 14.8.4 Yes
Operating System apple macos < 26.3 Yes
Operating System apple visionos < 26.3 Yes
Operating System apple watchos < 26.3 Yes

References