Use-After-Free Vulnerability in Apple iOS, iPadOS, macOS, tvOS, visionOS, and watchOS
CVE-2026-43686

Currently unrated

Key Information:

Vendor

Apple

Vendor
CVE Published:
14 September 2026

What is CVE-2026-43686?

A use-after-free vulnerability exists within Apple's operating systems, potentially leading to kernel memory corruption when connecting to a malicious NFS server. The issue has been resolved in various versions of iOS, iPadOS, macOS, tvOS, visionOS, and watchOS through enhancements in memory management. Users are urged to update their devices to protect against this vulnerability.

Affected Version(s)

iOS and iPadOS 0 < 26.7

iOS and iPadOS 0 < 27

macOS 0 < 15.8

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.