← Back to feed
Vulnerabilities & PatchesEmerging1 sourceJul 1, 2026 · 15:03via Zero Day Initiative Blog

The June 2026 Apple Security Update Review

Brief

We’re back with our look at the Apple macOS and iOS security updates. As this is a new feature for us, please let us know your feedback on the blog.

For June 2026, Apple released 37 unique CVEs across iOS 26.

  • 2 / iPadOS 26.
  • 2, macOS Tahoe 26.
  • 2, Safari 26.
  • 2. Since Apple doesn’t provide CVSS scores or other severity information, we’re left to speculate on which of these bugs is the most severe. The overwhelming majority (31 of 37) are WebKit/WebRTC bugs reachable through malicious web content.

Most of those are crash/DoS bugs rather than code execution, so the real risk lives in the small set of kernel bugs and the handful of WebKit sandbox escapes. However, there are a couple that stand out.

  • CVE-2026-43724 (Kernel) – According to Apple, “An app may be able to cause unexpected system termination or write kernel memory.”
Read more on Zero Day Initiative Blog