Known vulnerabilities in tvOS 26.1 23J580 - page 8

Vendor: Apple Inc.
Software: tvOS
Version: 26.1 23J580
Software CPE: cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
Total vulnerabilities: 196
Public exploits: 3
Known exploited (KEV): 3
Highest CVSSv4 Score: 8.8

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting tvOS version 26.1 23J580 tvOS 26.1 23J580 is affected by 196 vulnerabilities: 2 critical, 10 high, 46 medium, 138 low Critical High Medium Low

Vulnerabilities (196)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU131092 - Out-of-bounds read
CVE-2026-28920
CWE-125 Medium
No
No
26.5 23L471 12.05.2026 SB2026051205
SB2026051209
SB2026051210
and 5 more
#VU131046 - Memory corruption
CVE-2026-43653
CWE-119 Medium
No
No
26.5 23L471 12.05.2026 SB2026051205
SB2026051210
SB2026051214
and 3 more
#VU131043 - Improper input validation
CVE-2026-28987
CWE-20 Low
No
No
26.5 23L471 12.05.2026 SB2026051205
SB2026051209
SB2026051210
and 4 more
#VU131044 - Improper Access Control
CVE-2026-28983
CWE-284 Low
No
No
26.5 23L471 12.05.2026 SB2026051205
SB2026051214
SB2026051215
and 5 more
#VU131042 - Improper Access Control
CVE-2026-28986
CWE-284 Low
No
No
26.5 23L471 12.05.2026 SB2026051205
SB2026051209
SB2026051210
and 4 more
#VU131041 - Out-of-bounds write
CVE-2026-28972
CWE-787 Low
No
No
26.5 23L471 12.05.2026 SB2026051205
SB2026051209
SB2026051210
and 5 more
#VU124418 - Exposure of sensitive information to an unauthorized actor
CVE-2026-28863
CWE-200 Low
No
No
26.4 23L243 25.03.2026 SB2026032514
SB2026032539
SB2026032540
and 1 more
#VU124402 - Memory corruption
CVE-2026-28859
CWE-119 High
No
No
26.4 23L243 25.03.2026 SB2026032503
SB2026032504
SB2026032505
and 21 more
#VU124400 - State Issues
CVE-2026-20665
CWE-371 High
No
No
26.4 23L243 25.03.2026 SB2026032503
SB2026032504
SB2026032505
and 22 more
#VU124391 - Improper Access Control
CVE-2026-28882
CWE-284 Low
No
No
26.4 23L243 25.03.2026 SB2026032504
SB2026032514
SB2026032539
and 3 more
#VU124390 - Improper Access Control
CVE-2026-28867
CWE-284 Low
No
No
26.4 23L243 25.03.2026 SB2026032504
SB2026032506
SB2026032509
and 4 more
#VU124387 - Exposure of sensitive information to an unauthorized actor
CVE-2026-28870
CWE-200 Low
No
No
26.4 23L243 25.03.2026 SB2026032504
SB2026032514
SB2026032539
and 3 more
#VU124383 - Improper input validation
CVE-2026-28852
CWE-20 Low
No
No
26.4 23L243 25.03.2026 SB2026032504
SB2026032506
SB2026032509
and 4 more
#VU124363 - Use After Free
CVE-2026-20687
CWE-416 Low
No
No
26.4 23L243 25.03.2026 SB2026032504
SB2026032506
SB2026032509
and 3 more
#VU124361 - Memory corruption
CVE-2026-20698
CWE-119 Low
No
No
26.4 23L243 25.03.2026 SB2026032504
SB2026032514
SB2026032539
and 2 more
#VU124352 - Improper input validation
CVE-2026-28886
CWE-20 Low
No
No
26.4 23L243 25.03.2026 SB2026032504
SB2026032506
SB2026032507
and 5 more
#VU124342 - Improper input validation
CVE-2026-28878
CWE-20 Low
No
No
26.4 23L243 25.03.2026 SB2026032504
SB2026032507
SB2026032509
and 5 more
#VU124335 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2026-28865
CWE-300 Medium
No
No
26.4 23L243 25.03.2026 SB2026032504
SB2026032506
SB2026032507
and 5 more
#VU121026 - Insufficiently Protected Credentials
CVE-2025-14524
CWE-522 Low
No
No
26.4 23L243 07.01.2026 SB2026010741
SB2026010781
SB2026010782
and 23 more
#VU118780 - Out-of-bounds read
CVE-2025-64505
CWE-125 Medium
No
No
26.4 23L243 26.11.2025 SB2025112638
SB2025112639
SB2025112819
and 22 more


Showing elements 141 - 160 out of 196