CVE-2019-8796: Apple iPadOS

Medium severity, CVSS 5.3. EPSS: 1% chance of exploitation in the next 30 days.

A logic issue was addressed with improved validation. This issue is fixed in macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, iOS 12.4.3, watchOS 6.1, iOS 13.2 and iPadOS 13.2. AirDrop transfers may be unexpectedly accepted while in Everyone mode.

Affected products

  • Apple iPadOS: before 13.2 (fixed in 13.2)
  • Apple iPhone OS: before 12.4.3 (fixed in 12.4.3); from 13.0, before 13.2 (fixed in 13.2)
  • Apple Mac OS X: before 10.15.1 (fixed in 10.15.1)
  • Apple watchOS: before 6.1 (fixed in 6.1)

Published 2020-10-27. Last modified 2026-06-17.