Technology · Apple
Apple iPadOS vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 501 vulnerabilities in Apple iPadOS: 0 in the last 7 days and 294 in the last 90 days, 82 of them critical and 74 exploited in the wild. The most recent, CVE-2026-86924, was published on 14 September 2026.
- Last 7 days
- 0
- Last 90 days
- 294
- Critical, all time
- 82
- Exploited in the wild
- 74
About Apple iPadOS
A mobile operating system developed by Apple specifically for its iPad line of tablet computers.
Latest Apple iPadOS vulnerabilities
- CVE-2026-86924: Apple iOS and iPadOS memory corruption via malicious accessorymediumCVSS 5.5EPSS 0.2%
- CVE-2026-86905: Apple Keychain unauthorized credential deletion vulnerabilitymediumCVSS 5.5EPSS 0.1%
- CVE-2026-86904: Apple iOS iPadOS watchOS cross-app tracking privacy issuehighCVSS 7.5EPSS 0.4%
- CVE-2026-86903: Apple iOS out-of-bounds read in kernel memorymediumCVSS 5.5EPSS 0.2%
- CVE-2026-86898: Apple Safari universal cross-site scripting in webarchive handlingmediumCVSS 5.4EPSS 0.3%
- CVE-2026-86897: Apple Accessibility entitlement check bypass in iOS and macOSmediumCVSS 5.5EPSS 0.2%
- CVE-2026-86895: Apple CloudKit information disclosure in persistent account identifiershighCVSS 7.5EPSS 0.5%
- CVE-2026-86893: Apple iOS/iPadOS/tvOS/visionOS/watchOS permissions issue in CloudKitlowCVSS 3.3EPSS 0.1%
- CVE-2026-86892: Apple iOS entitlement validation denial of servicemediumCVSS 5.5EPSS 0.1%
- CVE-2026-86890: Apple iOS and iPadOS logic issue in locked device accessmediumCVSS 4.6EPSS 0.2%
- CVE-2026-86888: Apple App Store permissions issue allowing persistent account identifier exposurelowCVSS 3.3EPSS 0.1%
- CVE-2026-86887: Apple iOS privacy issue allowing app bypass of user preferenceslowCVSS 3.3EPSS 0.2%
- CVE-2026-86886: Apple iOS path traversal in system file accessmediumCVSS 5.5EPSS 0.2%
- CVE-2026-86885: Apple iOS input validation issue in wireless radio componentmediumCVSS 6.5EPSS 0.3%
- CVE-2026-86884: Apple iOS and iPadOS App Store permissions issuemediumCVSS 5.5EPSS 0.1%
- CVE-2026-86883: Apple iOS Accessibility privacy issue in file handlingmediumCVSS 5.5EPSS 0.1%
- CVE-2026-86882: Apple Accelerate Framework out-of-bounds write in image processingmediumCVSS 6.5EPSS 0.5%
- CVE-2026-86881: Apple iOS, iPadOS, and macOS certificate validation bypasscriticalCVSS 9.1EPSS 0.4%
- CVE-2026-86879: Apple iOS and iPadOS input validation denial-of-servicemediumCVSS 6.5EPSS 0.4%
- CVE-2026-86878: Apple iOS and iPadOS permissions issue allowing sensitive data accessmediumCVSS 5.5EPSS 0.1%
- CVE-2026-86876: Apple Accelerate Framework out-of-bounds write in image processingmediumCVSS 5.2EPSS 0.1%
- CVE-2026-86870: Apple iOS, iPadOS, macOS, visionOS, watchOS heap buffer overflow in Accelerate FrameworkmediumCVSS 6.5EPSS 0.4%
- CVE-2026-86869: Apple Accelerate Framework out-of-bounds write in image processingmediumCVSS 6.5EPSS 0.3%
- CVE-2026-84636: Apple iOS authorization bypass in state managementmediumCVSS 5.5EPSS 0.1%
- CVE-2026-84635: Apple Safari logic issue in state managementmediumCVSS 6.5EPSS 0.4%
Most severe Apple iPadOS vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2025-43300: Apple iOS, iPadOS, and macOS out-of-bounds write in Image I/Ocriticalexploited in the wildCVSS 10EPSS 4.5%
- CVE-2025-24085: Apple Multiple Products Use-After-Free Vulnerabilitycriticalexploited in the wildCVSS 10
- CVE-2025-31201: Apple Multiple Products Arbitrary Read and Write Vulnerabilitycriticalexploited in the wildCVSS 9.8
- CVE-2025-31200: Apple Multiple Products Memory Corruption Vulnerabilitycriticalexploited in the wildCVSS 9.8
- CVE-2022-22587: Apple Memory Corruption Vulnerabilitycriticalexploited in the wildCVSS 9.8
- CVE-2021-1870: Apple iOS, iPadOS, and macOS WebKit Remote Code Execution Vulnerabilitycriticalexploited in the wildCVSS 9.8
- CVE-2021-1871: Apple iOS, iPadOS, and macOS WebKit Remote Code Execution Vulnerabilitycriticalexploited in the wildCVSS 9.8
- CVE-2023-43000: A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Ventura 13.5, iOS 16.6…criticalexploited in the wildCVSS 8.8EPSS 3.9%
- CVE-2025-31277: Apple Multiple Products memory corruption in web content processingcriticalexploited in the wildCVSS 8.8EPSS 1.5%
- CVE-2021-30952: Apple Multiple Products integer overflow in WebKit content processingcriticalexploited in the wildCVSS 8.8EPSS 0.9%
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 29 Jun 2026 | 37 | 0 | |
| 6 Jul 2026 | 0 | 0 | |
| 13 Jul 2026 | 0 | 0 | |
| 20 Jul 2026 | 0 | 0 | |
| 27 Jul 2026 | 84 | 0 | |
| 3 Aug 2026 | 0 | 0 | |
| 10 Aug 2026 | 0 | 0 | |
| 17 Aug 2026 | 30 | 0 | |
| 24 Aug 2026 | 4 | 0 | |
| 31 Aug 2026 | 0 | 0 | |
| 7 Sep 2026 | 0 | 0 | |
| 14 Sep 2026 | 139 | 5 | |
| 21 Sep 2026 | 0 | 0 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/technologies/ipados.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "Apple iPadOS vulnerabilities", https://junglewise.ai/threats/technologies/ipados, 26 September 2026.