Reference page — cumulative record through Saturday, October 3, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
CVE-2026-86950
Apple iOS and iPadOS — An out-of-bounds write issue was addressed with improved bounds checking.
AV AC PR UI S C I A CVSS EPSS %ile KEV
N L N R U H H H 8.8 .0124 68.1 YES
AFFECTED
Product Versions Fixed
iOS and iPadOS unspecified —
macOS unspecified —
TIMELINE
Sep 8 Reserved by apple
Sep 28 Published (CNA: apple)
Sep 29 ADDED TO KEV — CVE-2026-86950 (Apple iOS and iPadOS). Remediation due October 2, 2026.
Description
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and iPadOS 26.7.1, macOS Sequoia 15.8.1, macOS Tahoe 26.7.1. Processing a maliciously crafted file may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 27.
Lifecycle
Complete event history — 3 events, chronological
| Date | Event | Detail |
| September 8, 2026 | Reserved | Reserved by apple |
| September 28, 2026 | Published | Published (CNA: apple) |
| September 29, 2026 | KEV ADDED | ADDED TO KEV — CVE-2026-86950 (Apple iOS and iPadOS). Remediation due October 2, 2026. |
Affected
Affected products and packages — 2 rows
| Vendor | Product / Package | Ecosystem | Version introduced | Fixed |
| Apple | iOS and iPadOS | — | — | — |
| Apple | macOS | — | — | — |
About this page
This is a reference page, not a dated page of record. It assembles the complete lifecycle of CVE-2026-86950 from the CVE Program record, NVD enrichment, the CISA KEV catalog, EPSS, and OSV advisories. The box score's numbers (CVSS, EPSS, KEV status) are current as of Saturday, October 3, 2026 UTC and are re-derived as the archive grows; only dated daily editions are immutable pages of record. The authoritative source for this identifier is cve.org.