Apple has released iOS 26.7.1 and iPadOS 26.7.1 with a security fix for a vulnerability it says may have been exploited in sophisticated attacks against specific targeted individuals.
The advisory, published on 28 September 2026, identifies the issue as CVE-2026-86950 and credits Meta Product Security. Apple says an out-of-bounds write was corrected through improved bounds checking.
The company’s wording describes reported exploitation on versions of iOS before iOS 27. It does not establish that every device on an older version has been attacked.
Apple’s release list also records macOS Tahoe 26.7.1 and macOS Sequoia 15.8.1 updates on 28 September. Users should consult the advisory for their own operating system rather than assume every update fixes identical issues.
Owners can check Software Update for the version offered to their device. Update availability depends on hardware and the software branch in use.
Sources: Apple — iOS 26.7.1 and iPadOS 26.7.1 security advisory; Apple security releases.
NextNews strives for accurate news, but readers should use this information with care. Details, availability and external links can change, and technical issues may occur. See our full disclaimer for details.
Disclaimer
NextNews strives for accurate news, but use it with caution—content changes often, external links may be iffy, and technical glitches happen. See the full disclaimer for details.