logo

Apple fixed first actively exploited zero-day in 2026

ID: d4f56cfa-ab7c-5249-ae37-3614922c6def

STIX ID: report--d4f56cfa-ab7c-5249-ae37-3614922c6def

Feed Name: Security Affairs

Threat Score
90/100

Date Published: 2026-02-12

Date Updated: 2026-04-22

Author: Pierluigi Paganini

...
...

Apple released security updates for iOS, iPadOS, macOS, watchOS, tvOS, and visionOS to fix an actively exploited zero-day (CVE-2026-20700) — a memory corruption bug in the Dynamic Link Editor (dyld) allowing arbitrary code execution — with Google’s Threat Analysis Group reporting the issue and Apple warning it may have been used in highly sophisticated, targeted attacks; the advisory also references prior exploited WebKit and ANGLE flaws and lists affected devices and patched OS versions.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.