Junglewise Threat Intelligence

CVE-2026-28973: Apple multiple operating systems sandbox escape via integer overflow

CVE-2026-28973 · Severity: info · Published 2026-07-27

Technologies: Apple macOS Tahoe, Apple watchOS, Apple iPadOS. Vendors: Apple.

Executive brief

A security vulnerability in Apple operating systems could allow a malicious application to bypass built-in security protections. Specifically, an app could break out of its restricted 'sandbox' environment, potentially gaining unauthorized access to sensitive user data or system resources. This affects iPhones, iPads, Macs, and Apple Watches running older software versions.

Technical details

An integer overflow vulnerability exists in multiple Apple operating systems, including iOS, iPadOS, macOS, and watchOS. The flaw is rooted in insufficient input validation, which could be exploited by a malicious application to achieve a sandbox escape. By breaking out of the sandbox, the application could gain elevated privileges or access data outside of its intended scope. The vulnerability was mitigated by implementing improved input validation. Patches are available in iOS/iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, and watchOS 26.6.

Affected products

  • Apple iOS and iPadOS Before 26.6
  • Apple macOS Sequoia Before 15.7.8
  • Apple macOS Sonoma Before 14.8.8
  • Apple macOS Tahoe Before 26.6
  • Apple watchOS Before 26.6

Timeline

  • 2026-07-27: advisory
  • 2026-07-27: disclosed
  • 2026-07-27: patched

References

Related threats