CVE-2026-20700HIGH 7.8CISA KEVEPSS p67.1%

CVE-2026-20700Apple Multiple Buffer Overflow Vulnerability

Apple / Multiple Products

Description

Apple iOS, macOS, tvOS, watchOS, and visionOS contain an improper restriction of operations within the bounds of a memory buffer vulnerability that could allow an attacker with memory write the capability to execute arbitrary code.

Scoring

CVSS 3.17.8 (HIGH)
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS1.32% probability of exploitation · percentile 67.1% · 2026-06-18T12:00:27Z
Published2026-02-11
Last modified2026-03-25

CISA KEV entry

Added to KEV: 2026-02-12

Underlying weaknesses· 1

CWE-119

References

  1. https://support.apple.com/en-us/126346
  2. https://support.apple.com/en-us/126348
  3. https://support.apple.com/en-us/126351
  4. https://support.apple.com/en-us/126352
  5. https://support.apple.com/en-us/126353
  6. https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-20700

1

TypeTargetConfidenceTier
WeaknessImproper Restriction of Operations within the Bounds of a Memory Buffercwe-1190%live

(incoming)1

TypeTargetConfidenceTier
KEVEntryApple Multiple Buffer Overflow Vulnerabilitykev-cve-2026-207000%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Apple Multiple Products Classic Buffer Overflow Vulnerability
CVE
Apple Multiple Products Buffer Overflow Vulnerability
CVE
Apple Multiple Products Memory Corruption Vulnerability
CVE
Apple iOS and iPadOS Buffer Overflow Vulnerability
CVE
Apple Multiple Products Memory Initialization Vulnerability
CVE
CVE-2022-42827
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.