CVE-2026-84598

Apple · iOS and iPadOS

A path traversal vulnerability in Apple iOS and iPadOS allows an attacker with physical access to a trust-paired device to read and write arbitrary files on the system.

Executive summary

A critical path traversal vulnerability in Apple iOS and iPadOS enables unauthorized file system access for attackers with physical access to a trust-paired device.

Vulnerability

This is a path traversal vulnerability where insufficient path validation allows an attacker to interact with the file system. The attack requires the user to have physical access to a device that has already been trust-paired with the attacker's hardware.

Business impact

The ability to read and write arbitrary files presents a significant risk to data confidentiality and device integrity. Successful exploitation could allow an attacker to exfiltrate sensitive user data, modify system configurations, or inject malicious content, potentially leading to a full compromise of the device state. Given the high CVSS score of 7.5, organizations must treat this as a serious threat to mobile fleet security.

Remediation

Immediate Action: Update all managed Apple devices to iOS or iPadOS version 26.7 or 27 immediately to apply the vendor-provided patch for path validation.

Proactive Monitoring: Review device management logs for unauthorized pairing attempts or unusual file access patterns occurring shortly after device synchronization.

Compensating Controls: Enforce strict physical security protocols for mobile devices and disable the ability to trust new devices via Mobile Device Management (MDM) policies where possible to limit the attack surface.

Exploitation status

Public Exploit Available: No.

Analyst recommendation

The severity of this vulnerability necessitates a swift patching cycle across all mobile endpoints. IT administrators should prioritize the deployment of the 26.7 or 27 update to ensure that path validation is correctly enforced, thereby neutralizing the risk of unauthorized file system interaction.

More Apple CVEs all →

History

CVE Brief tracked this CVE 2 days before it had a CVSS score.

  1. Disclosed CVE record published
  2. Collected by CVE Brief No CVSS score yet; tracked as early warning
  3. CVSS score assigned 7.5 (3.1)
  4. Analyst report written

Sources