Authentication Bypass Vulnerability in Apple iOS and iPadOS Devices
CVE-2026-28856
4.6MEDIUM
What is CVE-2026-28856?
A vulnerability exists in Apple’s iOS and iPadOS, where an attacker with physical access to a locked device may gain unauthorized access to sensitive user information. This issue has been resolved with enhancements in authentication protocols in versions 26.4 of iOS, iPadOS, visionOS, and watchOS.
Affected Version(s)
iOS and iPadOS 0 < 26.4
visionOS 0 < 26.4
watchOS 0 < 26.4