An information leakage was addressed with additional validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Sequoia 15.7.7, macOS Sonoma 14.8.7, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, watchOS 26.5. Visiting a maliciously crafted website may leak sensitive data.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 11 May 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Sensitive Data Leak via Malicious Website in Apple Operating Systems | |
| First Time appeared |
Apple
Apple ios And Ipados Apple macos Apple tvos Apple visionos Apple watchos |
|
| Weaknesses | CWE-200 | |
| Vendors & Products |
Apple
Apple ios And Ipados Apple macos Apple tvos Apple visionos Apple watchos |
Mon, 11 May 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An information leakage was addressed with additional validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Sequoia 15.7.7, macOS Sonoma 14.8.7, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, watchOS 26.5. Visiting a maliciously crafted website may leak sensitive data. | |
| References |
|
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: apple
Published:
Updated: 2026-05-11T20:08:35.900Z
Reserved: 2026-03-03T16:36:03.986Z
Link: CVE-2026-28920
No data.
Status : Received
Published: 2026-05-11T21:18:54.427
Modified: 2026-05-11T21:18:54.427
Link: CVE-2026-28920
No data.
OpenCVE Enrichment
Updated: 2026-05-11T22:00:07Z
Weaknesses