CVE-2026-28865 | Apple iOS/iPadOS/macOS/tvOS/visionOS/watchOS up to 18.7.6/26.3 State Management improper authentication
A vulnerability classified as critical was found in Apple iOS, iPadOS, macOS, tvOS, visionOS and watchOS up to 18.7.6/26.3. This affects an unknown function of the component State Management Handler. Executing a manipulation can lead to improper authentication.
The identification of this vulnerability is CVE-2026-28865. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is advised.