PT-2026-27542 · Apple · Macos Sequoia+6

Published

2026-03-24

·

Updated

2026-04-15

·

CVE-2026-20688

CVSS v3.1

9.3

Critical

VectorAV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions iOS versions prior to 26.4 iPadOS versions prior to 26.4 macOS Sequoia versions prior to 15.7.5 macOS Sonoma versions prior to 14.8.5 macOS Tahoe versions prior to 26.4 visionOS versions prior to 26.4
Description A flaw exists in path handling due to insufficient validation, potentially allowing an application to escape its sandbox. This could lead to unauthorized access or data leakage.
Recommendations Update iOS to version 26.4. Update iPadOS to version 26.4. Update macOS Sequoia to version 15.7.5. Update macOS Sonoma to version 14.8.5. Update macOS Tahoe to version 26.4. Update visionOS to version 26.4.

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2026-20688

Affected Products

Apple Macos
Ios
Ipados
Macos Sequoia
Macos Sonoma
Macos Tahoe
Visionos