CVE-2026-20683

An authentication issue was addressed with improved state management. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, visionOS 27. An app may be able to use the Sign In With Apple authentication flow to access the user's Apple Account.
Configurations

No configuration.

History

16 Sep 2026, 20:17

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.1
CWE CWE-287

Information

Published : 2026-09-14 21:17

Updated : 2026-09-16 20:17


NVD link : CVE-2026-20683

Mitre link : CVE-2026-20683

CVE.ORG link : CVE-2026-20683


JSON object : View

Products Affected

No product.

CWE
CWE-287

Improper Authentication