Operating Systems & WebKit25 Active Advisories Tracked

Apple Vulnerability & Threat Radar

Security advisories for Apple macOS, iOS, iPadOS, and WebKit browser engine zero-day vulnerabilities exploited in targeted attacks.

Recommended Protective Controls for Apple Environments

Deploy continuous behavioral telemetry and micro-segmentation boundaries to shield Apple assets.

Evaluate Recommended Defenses →

Recent Disclosures & Advisories

20 Critical Severity
NVD
10h ago

CVE-2026-94128 - A security vulnerability has been detected in BioStar VIVID LED DJ 4.0.2411.1500. This affects the function sub_1105C of

A security vulnerability has been detected in BioStar VIVID LED DJ 4.0.2411.1500. This affects the function sub_1105C of the file BS_LED64.sys of the component IOCTL Handler. The m... This is a high threat mapped to CVE-2026-94128; security leaders should validate exposure, prioritize patching, and verify compensati...

NVD
23h ago

CVE-2026-92254 - Missing Authorization in the IOCTL handlers of the wsdkd.sys kernel drivers in Watchdog WatchDog Antivirus 1.8.640 (driv

Missing Authorization in the IOCTL handlers of the wsdkd.sys kernel drivers in Watchdog WatchDog Antivirus 1.8.640 (driver versions 1.3.0.0 and earlier) on Microsoft Windows allows... This is a low threat mapped to CVE-2026-92254; security leaders should validate exposure, prioritize patching, and verify compensatin...

NVD
2d ago

CVE-2026-13770 - The AppMySite – WordPress & WooCommerce Mobile App Builder (No-Code Android & iOS App Maker) plugin for WordPress is vul

The AppMySite – WordPress & WooCommerce Mobile App Builder (No-Code Android & iOS App Maker) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via save_ams_license_... This is a medium threat mapped to CVE-2026-13770; security leaders should validate exposure, prioritize patching, and verify compensa...

CISA KEV
3d ago

Linux Kernel Race Condition Vulnerability

Linux Kernel contains a race condition vulnerability which allows concurrent writes to the same AF_ALG socket causing data to be unpredictably interleaved and creating inconsistencies in the socket's internal state. This is a critical threat mapped to CVE-2025-39964; security leaders should validate exposure, priori...

CISA KEV
3d ago

Linux Kernel Out-of-Bounds Write Vulnerability

Linux Kernel contains an out-of-bounds write vulnerability in the ebtables SNAT target which allows an ARP sender hardware address rewrite to write directly into a nonlinear socket-buffer fragment backed by a splice-imported file page. This is a critical threat mapped to CVE-2026-53266; security leaders should valid...

CISA KEV
3d ago

Linux Kernel Improper Check for Unusual or Exceptional Conditions Vulnerability

Linux Kernel contains an improper check for unusual or exceptional conditions vulnerability in the TLS receive path which allows a zero-length record retrieved from the rx_list to bypass the intended recvmsg() record-type handling, potentially causing subsequent TLS records to be processed using incorrect zero-copy...

NVD
10d ago

CVE-2026-15419 - In the silabser.sys driver for CP210x devices v11.5.0 and earlier, a local unprivileged user with a malicious device can

In the silabser.sys driver for CP210x devices v11.5.0 and earlier, a local unprivileged user with a malicious device can use malformed packets to corrupt kernel pool memory, result... This is a low threat mapped to CVE-2026-15419; security leaders should validate exposure, prioritize patching, and verify compensatin...

CISA KEV
11d ago

MikroTik RouterOS Missing Authentication for Critical Function Vulnerability

MikroTik RouterOS contains a missing authenticaion for critical function vulnerability which allows kernel memory disclosure and denial of service in the btest service. This is a critical threat mapped to CVE-2026-67277; security leaders should validate exposure, prioritize patching, and verify compensating controls.

CISA KEV
12d ago

Fortinet Multiple Products Heap-based Buffer Overflow Vulnerability

Fortinet FortiOS, FortiSwitchManager, and FortiSASE contain a heap-based buffer overflow vulnerability that allows an attacker to execute unauthorized code or commands via specially crafted packets. This is a critical threat mapped to CVE-2025-25249; security leaders should validate exposure, prioritize patching, an...

CISA KEV
25d ago

Linux Kernel Unspecified Vulnerability

Linux Kernel contains an unspecified vulnerability that can allow for privilege escalation via IPv6 networking subsystem. This is a critical threat mapped to CVE-2026-53362; security leaders should validate exposure, prioritize patching, and verify compensating controls.

CISA KEV
8/18/2026

Apple macOS Improper Authentication Vulnerability

Apple macOS contains an improper authentication vulnerability that could allow an attacker on the network to authenticate to Screen Sharing without valid credentials. This is a critical threat mapped to CVE-2026-65400; security leaders should validate exposure, prioritize patching, and verify compensating controls.

CISA KEV
7/13/2026

Cisco IOS Cross-Site Request Forgery Vulnerability

Cisco IOS 12.4 contains multiple cross-site forgery vulnerabilities that allows remote attackers to execute arbitrary commands via (1) a certain "show privilege" command to the /le... This is a critical threat mapped to CVE-2008-4128; security leaders should validate exposure, prioritize patching, and verify compens...

CISA KEV
6/2/2026

Linux Kernel Improper Authentication Vulnerability

Linux Kernel contains an improper authentication vulnerability which could allow for privilege escalation via the cgroups v1 release_agent feature. This is a critical threat mapped to CVE-2022-0492; security leaders should validate exposure, prioritize patching, and verify compensating controls.

CISA KEV
5/1/2026

Linux Kernel Incorrect Resource Transfer Between Spheres Vulnerability

Linux Kernel contains an incorrect resource transfer between spheres vulnerability that could allow for privilege escalation. This is a critical threat mapped to CVE-2026-31431; security leaders should validate exposure, prioritize patching, and verify compensating controls.

CISA KEV
3/20/2026

Apple Multiple Products Improper Locking Vulnerability

Apple watchOS, iOS, iPadOS, macOS, visionOS, and tvOS contain an improper locking vulnerability that could allow a malicious application to cause unexpected changes in memory shared between processes. This is a critical threat mapped to CVE-2025-43510; security leaders should validate exposure, prioritize patching,...

CISA KEV
3/20/2026

Apple Multiple Products Classic Buffer Overflow Vulnerability

Apple watchOS, iOS, iPadOS, macOS, visionOS, and tvOS contain a classic buffer overflow vulnerability which could allow a malicious application to cause unexpected system termination or write kernel memory. This is a critical threat mapped to CVE-2025-43520; security leaders should validate exposure, prioritize patc...

CISA KEV
3/20/2026

Apple Multiple Products Buffer Overflow Vulnerability

Apple Safari, iOS, watchOS, visionOS, iPadOS, macOS, and tvOS contain a buffer overflow vulnerability that could allow the processing of maliciously crafted web content which may lead to memory corruption. This is a critical threat mapped to CVE-2025-31277; security leaders should validate exposure, prioritize patch...

CISA KEV
3/5/2026

Apple Multiple products Use-After-Free Vulnerability

Apple macOS, iOS, iPadOS, and Safari 16.6 contain a use-after-free vulnerability due to the processing of maliciously crafted web content that may lead to memory corruption. This is a critical threat mapped to CVE-2023-43000; security leaders should validate exposure, prioritize patching, and verify compensating con...

CISA KEV
3/5/2026

Apple Multiple Products Integer Overflow or Wraparound Vulnerability

Apple tvOS, macOS, Safari, iPadOS and watchOS contain an integer overflow or wraparound vulnerability due to the processing of maliciously crafted web content that may lead to arbitrary code execution. This is a critical threat mapped to CVE-2021-30952; security leaders should validate exposure, prioritize patching,...

CISA KEV
2/12/2026

Apple Multiple Buffer Overflow Vulnerability

Apple iOS, macOS, tvOS, watchOS, and visionOS contain an improper restriction of operations within the bounds of a memory buffer vulnerability that could allow an attacker with memory write the capability to execute arbitrary code. This is a critical threat mapped to CVE-2026-20700; security leaders should validate...

Share Intel:Share on XLinkedIn

Never Miss a Critical Apple Patch

Subscribe to the SecOps Pulse executive threat briefing for early warnings on unpatched vulnerabilities.

Weekly Executive Briefing

Top critical & high-severity threats, every week.

No spam. Unsubscribe anytime. SecOpsPulse may include sponsored security tool recommendations.