VDB
CVE-2026-28864
CVE-2026-28864
PUBLISHED
CVSS 3.299999952316284 LOW
This issue was addressed with improved permissions checking. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 26.4, macOS Sequoia 15.7.5, macOS Sonoma 14.8.5, macOS Tahoe 26.4, visionOS 26.4, watchOS 26.4. A local attacker may gain access to user's Keychain items.
EPSS 0.01% · 1.7th percentile
Risk Scores
CVSS 3.1
3.299999952316284
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
EPSS Score
0.01%
1.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apple | watchOS | 0 |
| Apple | iOS and iPadOS | 0, 0 |
| Apple | visionOS | 0 |
| apple | iphone_os | 0, 26.0 |
| apple | ipados | 26.0, 0 |
| Apple | macOS | 0, 0, 0 |
| apple | watchos | 0 |
| apple | macos | 26.0, 15.0, 14.0 |
| apple | visionos | 0 |
Exploit Intelligence
- CIRCL seen: CVE-2026-28864 (circl-sighting)
- CIRCL seen: CVE-2026-28864 (circl-sighting)
- CIRCL seen: CVE-2026-28864 (circl-sighting)
- CIRCL seen: CVE-2026-28864 (circl-sighting)
- CIRCL seen: CVE-2026-28864 (circl-sighting)
- CIRCL seen: CVE-2026-28864 (circl-sighting)
- https://support.apple.com/en-us/126795 (circl)
- https://support.apple.com/en-us/126799 (circl)
- https://support.apple.com/en-us/126798 (circl)
- https://support.apple.com/en-us/126796 (circl)
…and 27 more exploits
Timeline
- Mar 25, 2026 CVE Published
- Mar 25, 2026 EPSS Score
- Mar 25, 2026 Coalition ESS Score
- Mar 25, 2026 PoC Published
- Mar 25, 2026 PoC Published
- Mar 25, 2026 PoC Published
- Mar 26, 2026 PoC Published
- Mar 26, 2026 PoC Published
- Mar 29, 2026 PoC Published
- Mar 29, 2026 Security Advisory
- May 18, 2026 EPSS Score
- May 19, 2026 EPSS Score
References
- https://support.apple.com/en-us/126794 url
- https://support.apple.com/en-us/126795 url
- https://support.apple.com/en-us/126796 url
- https://support.apple.com/en-us/126798 url
- https://support.apple.com/en-us/126799 url
- https://support.apple.com/en-us/126792 technical
- https://support.apple.com/en-us/126793 technical
- https://support.apple.com/en-us/126800 advisory
- https://support.apple.com/en-us/126797 advisory
- https://support.apple.com/en-us/126801 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2026-28864 advisory