Apple has released iOS 26.6 and iPadOS 26.6, which include 87 security fixes. These updates address a broad range of vulnerabilities across various components of the operating systems.
The fixes are detailed in Apple's security advisory and cover 78 individual vulnerability entries, with some entries addressing multiple CVEs.
Among the notable fixes are a MediaRemote flaw that could grant an app root privileges and an AVEVideoEncoder vulnerability that could allow an app to execute arbitrary code with kernel privileges. Issues in Game Center and libc that could enable a malicious app to escape its sandbox were also resolved.
Other critical vulnerabilities include a CloudAttestation flaw that could bypass code-signing enforcement and an ImageIO vulnerability leading to arbitrary code execution when processing maliciously crafted images. The flaws could also lead to sensitive data access, denial-of-service conditions, and unauthorized contact additions.
In addition to iOS and iPadOS, Apple also released updates for other operating systems. macOS Tahoe 26.6 received 155 vulnerability fixes, while macOS Sequoia 15.7.8 addressed 138 security holes, and macOS Sonoma 14.8.8 resolved 127 issues. Roughly 100 flaws were also patched in watchOS, tvOS, and visionOS.
One specific vulnerability, CVE-2026-43810, noted in macOS, allows a remote user to corrupt kernel memory, which is considered significant due to the remote nature of the attack.
Apple has not indicated that any of the vulnerabilities fixed in iOS 26.6 were actively exploited in the wild. However, these updates are important for maintaining device security and protecting user data.
Users are advised to update their devices to the latest operating system versions to mitigate potential security risks.
✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →
One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.
One email a day. Unsubscribe in one click, any time.
Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.
▶ Play today's briefNew every morning, and the back catalogue is archived by date.
Apple released patches for 87 vulnerabilities in iOS 26.6, 155 in macOS Tahoe 26.6, and dozens more across other operating systems including watchOS, tvOS, visionOS, and Safari. These updates address flaws that could lead to data access, arbitrary code execution, and denial-of-service conditions, enhancing the security of Apple's device ecosystem.
Apple has released iOS 26.6 and iPadOS 26.6, which include 78 individual vulnerability entries tied to 87 unique CVE numbers. These updates address a broad range of security issues across the system, including flaws in MediaRemote, AVEVideoEncoder, Game Center, libc, CloudAttestation, ImageIO, SceneKit, Accessibility, Contacts, Kernel, WebKit, and Wi-Fi. The fixes are important for maintaining device security and protecting user data.