Input Validation Flaw in iOS Devices by Apple
CVE-2026-20642
2.4LOW
What is CVE-2026-20642?
An input validation vulnerability in Apple's iOS and iPadOS allows unauthorized access to photos directly from the lock screen for users with physical access to the device. This flaw highlights the importance of robust input validation mechanisms to protect sensitive information and user privacy. Mitigations have been implemented in iOS 26.3 and iPadOS 26.3 to rectify this issue.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
iOS and iPadOS < 26.3
References
CVSS V3.1
Score:
2.4
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved