CVE-2026-46486: Mvt-Project Mvt

Medium severity, CVSS 5.3. EPSS: 0.5% chance of exploitation in the next 30 days.

MVT (Mobile Verification Toolkit) helps with conducting forensics of mobile devices in order to find signs of a potential compromise. Prior to version 2026.5.12, there is a path traversal vulnerability via unsanitized File identifiers in iOS Backup processing. This issue has been patched in version 2026.5.12.

Affected products

Published 2026-06-08. Last modified 2026-07-23.