CVE-2026-64732
MEDIUM
4.6
CVSS 3.1
Description
This issue was addressed through improved state management. This issue is fixed in iOS 26.6 and iPadOS 26.6. An attacker with physical access may be able to access sensitive user data during iPhone Mirroring.
Metadata
Severity & Metrics
4.6
MEDIUM CVSS 3.1
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
SSVC — CISA Coordinator
Affected products (1)
| Vendor | Product | Platform | Versions |
|---|---|---|---|
| Apple | iOS and iPadOS | — | 0 < 26.6 |
Weakness (CWE)
| CWE | Source | Description |
|---|---|---|
| — | cna | An attacker with physical access may be able to access sensitive user data during iPhone Mirroring |
| CWE-284 | adp | CWE-284 Improper Access Control |
CVSS scores (1)
| Score | Severity | Version | Source | Vector |
|---|---|---|---|---|
| 4.6 | MEDIUM | 3.1 | adp | CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
References (1)