CVE-2026-64761: Apple iPadOS

High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.

A privacy issue was addressed with improved handling of user preferences. This issue is fixed in iOS 27 and iPadOS 27. An app may be able to identify what other apps a user has installed.

Affected products

  • Apple iPadOS: before 27.0 (fixed in 27.0)
  • Apple iPhone OS: before 27.0 (fixed in 27.0)

Published 2026-09-14. Last modified 2026-09-16.