CVE-2026-20656

low

Description

A logic issue was addressed with improved validation. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, Safari 26.3, macOS Tahoe 26.3. An app may be able to access a user's Safari history.

References

https://support.apple.com/en-us/126354

https://support.apple.com/en-us/126348

https://support.apple.com/en-us/126347

Details

Source: Mitre, NVD

Published: 2026-02-11

Updated: 2026-02-18

Risk Information

CVSS v2

Base Score: 1.7

Vector: CVSS2#AV:L/AC:L/Au:S/C:P/I:N/A:N

Severity: Low

CVSS v3

Base Score: 3.3

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

Severity: Low

EPSS

EPSS: 0.00017