An issue existed in the handling of environment variables. This issue was addressed with improved validation. This issue is fixed in watchOS 26.3, macOS Tahoe 26.3, macOS Sonoma 14.8.4, visionOS 26.3, iOS 26.3 and iPadOS 26.3. An app may be able to access sensitive user data.
Metrics
Affected Vendors & Products
References
History
Thu, 12 Feb 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-20 | |
| Metrics |
cvssV3_1
|
Thu, 12 Feb 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apple
Apple ios And Ipados Apple macos Apple visionos Apple watchos |
|
| Vendors & Products |
Apple
Apple ios And Ipados Apple macos Apple visionos Apple watchos |
Wed, 11 Feb 2026 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue existed in the handling of environment variables. This issue was addressed with improved validation. This issue is fixed in watchOS 26.3, macOS Tahoe 26.3, macOS Sonoma 14.8.4, visionOS 26.3, iOS 26.3 and iPadOS 26.3. An app may be able to access sensitive user data. | |
| References |
|
Status: PUBLISHED
Assigner: apple
Published: 2026-02-11T22:58:07.986Z
Updated: 2026-02-12T21:19:35.754Z
Reserved: 2025-11-11T14:43:07.860Z
Link: CVE-2026-20627
Updated: 2026-02-12T21:18:23.189Z
Status : Awaiting Analysis
Published: 2026-02-11T23:16:06.187
Modified: 2026-02-12T22:16:04.547
Link: CVE-2026-20627
No data.