Known vulnerabilities in visionOS 26.0 23M5263m - page 8

Vendor: Apple Inc.
Software: visionOS
Version: 26.0 23M5263m
Software CPE: cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
Total vulnerabilities: 299
Public exploits: 5
Known exploited (KEV): 5
Highest CVSSv4 Score: 8.8

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting visionOS version 26.0 23M5263m visionOS 26.0 23M5263m is affected by 299 vulnerabilities: 2 critical, 13 high, 64 medium, 220 low Critical High Medium Low

Vulnerabilities (299)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU131092 - Out-of-bounds read
CVE-2026-28920
CWE-125 Medium
No
No
26.5 12.05.2026 SB2026051205
SB2026051209
SB2026051210
and 5 more
#VU131051 - Memory corruption
CVE-2026-28940
CWE-119 Medium
No
No
26.5 12.05.2026 SB2026051205
SB2026051209
SB2026051214
and 3 more
#VU131049 - Out-of-bounds write
CVE-2026-43666
CWE-787 Low
No
No
26.5 12.05.2026 SB2026051205
SB2026051209
SB2026051210
and 5 more
#VU131048 - Use After Free
CVE-2026-43668
CWE-416 Medium
No
No
26.5 12.05.2026 SB2026051205
SB2026051209
SB2026051210
and 5 more
#VU131044 - Improper Access Control
CVE-2026-28983
CWE-284 Low
No
No
26.5 12.05.2026 SB2026051205
SB2026051214
SB2026051215
and 5 more
#VU131041 - Out-of-bounds write
CVE-2026-28972
CWE-787 Low
No
No
26.5 12.05.2026 SB2026051205
SB2026051209
SB2026051210
and 5 more
#VU131038 - Improper input validation
CVE-2026-28897
CWE-20 Low
No
No
26.5 12.05.2026 SB2026051205
SB2026051209
SB2026051210
and 5 more
#VU124419 - Improper Authentication
CVE-2026-28856
CWE-287 Low
No
No
26.4 25.03.2026 SB2026032514
SB2026032540
SB2026032541
#VU124418 - Exposure of sensitive information to an unauthorized actor
CVE-2026-28863
CWE-200 Low
No
No
26.4 25.03.2026 SB2026032514
SB2026032539
SB2026032540
and 1 more
#VU124406 - Exposure of sensitive information to an unauthorized actor
CVE-2026-20691
CWE-200 Medium
No
No
26.4 25.03.2026 SB2026032503
SB2026032504
SB2026032505
and 20 more
#VU124402 - Memory corruption
CVE-2026-28859
CWE-119 High
No
No
26.4 25.03.2026 SB2026032503
SB2026032504
SB2026032505
and 21 more
#VU124401 - State Issues
CVE-2026-28861
CWE-371 Low
No
No
26.4 25.03.2026 SB2026032503
SB2026032504
SB2026032505
and 8 more
#VU124400 - State Issues
CVE-2026-20665
CWE-371 High
No
No
26.4 25.03.2026 SB2026032503
SB2026032504
SB2026032505
and 22 more
#VU124398 - Exposure of sensitive information to an unauthorized actor
CVE-2026-28864
CWE-200 Low
No
No
26.4 25.03.2026 SB2026032504
SB2026032506
SB2026032507
and 4 more
#VU124391 - Improper Access Control
CVE-2026-28882
CWE-284 Low
No
No
26.4 25.03.2026 SB2026032504
SB2026032514
SB2026032539
and 3 more
#VU124386 - Memory corruption
CVE-2026-28857
CWE-119 Low
No
No
26.4 25.03.2026 SB2026032503
SB2026032504
SB2026032505
and 19 more
#VU124385 - Memory corruption
CVE-2026-20664
CWE-119 Low
No
No
26.4 25.03.2026 SB2026032503
SB2026032504
SB2026032505
and 19 more
#VU124383 - Improper input validation
CVE-2026-28852
CWE-20 Low
No
No
26.4 25.03.2026 SB2026032504
SB2026032506
SB2026032509
and 4 more
#VU124375 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-20688
CWE-22 Low
No
No
26.4 25.03.2026 SB2026032504
SB2026032506
SB2026032507
and 2 more
#VU124085 - Protection Mechanism Failure
CVE-2026-20643
CWE-693 Medium
No
No
26.4 17.03.2026 SB2026031771
SB2026031772
SB2026031773
and 22 more


Showing elements 141 - 160 out of 299