< Back to all clusters
[TECHNOLOGY] · United States · 48 sources

started · updated

Apple releases iOS 26.6.1 and macOS updates to patch critical security flaws

Apple has released a series of critical security updates, including iOS 26.6.1, iPadOS 26.6.1, visionOS 26.6.1, and macOS Tahoe 26.6.2, to address approximately 30 vulnerabilities. The updates are primarily focused on security patches rather than new features, serving as a final major maintenance cycle before the anticipated release of iOS 27.

A significant portion of the fixes—roughly 21 vulnerabilities—targets the WebKit engine, which powers the Safari browser. These flaws could lead to memory corruption, unexpected system crashes, or the leakage of sensitive data. Additionally, the updates address critical issues in the ImageIO framework, such as CVE-2026-65346, which could allow arbitrary code execution via specially crafted images, and the Kernel, which could enable unauthorized memory access.

Another notable fix involves a Telephony vulnerability (CVE-2026-65329) that could allow attackers to bypass IPSec authentication and intercept network traffic. Nine of the identified WebKit vulnerabilities were discovered by researchers using OpenAI Codex Security. While these flaws are serious, there is currently no evidence that they have been exploited in the wild. Apple also released iOS 18.7.10 and iPadOS 18.7.10 to provide security support for older compatible devices.

Entities

Apple · Cisco Talos · OpenAI · OpenAI Codex Security · Safari · WebKit · iOS · iPhone · iPhone · macOS Tahoe

Claims

What the coverage asserts, and how many sources carry each claim.

Sources

24 days ago