Apple · Ios · CVE-2026-20638
**Name of the Vulnerable Software and Affected Versions**
iOS versions prior to 26.3
iPadOS versions prior to 26.3
**Description**
A logic issue existed where a user with Live Caller ID app extensions disabled could have identifying information leaked to those extensions. The issue was resolved through improved checks.
**Recommendations**
Update to iOS version 26.3 or later.
Update to iPadOS version 26.3 or later.