Apple Zero-Day Vulnerability Weaponized in Targeted Attacks
Apple says attackers are exploiting out-of-bounds write zero-day CVE-2026-86950 in targeted attacks.
Dark Reading reports that attackers are exploiting CVE-2026-86950, an Apple out-of-bounds write vulnerability, in targeted attacks. Apple described the activity as extremely sophisticated. The brief item does not name the affected product, a patch, or the intrusion vector.
- Apple says CVE-2026-86950 is being exploited in targeted attacks.
- The flaw is described as an out-of-bounds write.
- Apple characterizes the exploitation as extremely sophisticated.
- The affected Apple product and patch status are not stated.
Vulnerabilities mentionedAll →
- CVE-2026-869508.8<1%Out-of-Bounds Write in Apple CoreGraphics Enables Code Execution on iOS and macOSpublished · Apple iOS KEV PoC
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2026-86950 |
Attackers are exploiting CVE-2026-86950, an out-of-bounds write flaw, in an extremely sophisticated fashion, according to Apple.
The full text could not be extracted from this site (paywall, bot protection or heavy scripting). Read it at darkreading.com.