CVE-2020-27951: Apple iPadOS

High severity, CVSS 7.8. EPSS: 1.1% chance of exploitation in the next 30 days.

This issue was addressed with improved checks. This issue is fixed in watchOS 6.3, iOS 12.5, iOS 14.3 and iPadOS 14.3, watchOS 7.2. Unauthorized code execution may lead to an authentication policy violation.

Affected products

  • Apple iPadOS: before 14.3 (fixed in 14.3)
  • Apple iPhone OS: before 12.5 (fixed in 12.5); from 14.0, before 14.3 (fixed in 14.3)
  • Apple watchOS: from 6.0, before 6.3 (fixed in 6.3); from 7.0, before 7.2 (fixed in 7.2)

Published 2021-04-02. Last modified 2026-06-17.