---
id: CVE-2026-64760
title: An information leakage was addressed with additional validation
summary: >-
  An information leakage was addressed with additional validation. This issue is
  fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 27 and iPadOS 27, macOS Golden
  Gate 27, tvOS 27, visionOS 27, watchOS 27. An app may be able to leak
  sensitive ke…
severity: medium
cvss: 5.5
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N'
cwe:
  - CWE-200
vendor: apple
product: ipados
affected:
  - ipados < 18.7.10
  - iphone_os < 18.7.10
patched:
  - ipados 18.7.10
  - iphone_os 18.7.10
published: '2026-08-17'
updated: '2026-09-14'
sourceUpdated: '2026-09-14T21:17:15.097'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-64760'
references:
  - url: 'https://support.apple.com/en-us/148287'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/149034'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/149035'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/149036'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/149037'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/149038'
    label: product-security@apple.com
tags:
  - nvd
  - cve.org
epss: 0.00164
epssPercentile: 0.04976
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: partial
  timestamp: '2026-08-18T12:55:20.638850Z'
ingestedAt: '2026-09-14T21:15:17.466Z'
---

## Overview

An information leakage was addressed with additional validation. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 27 and iPadOS 27, macOS Golden Gate 27, tvOS 27, visionOS 27, watchOS 27. An app may be able to leak sensitive kernel state.

## Affected

- `ipados < 18.7.10`
- `iphone_os < 18.7.10`

## Remediation

Upgrade past the affected range:

- `ipados 18.7.10`
- `iphone_os 18.7.10`
