Apple Patches Exploited Notification Flaw, (Thu, Apr 23rd)

2026-04-23T19:23:47Zfeceb024992d3bc9d3f2b942eeae835c7cd1bdce8d05098d5bed22e9d4364c84
CVE-2026-28950appleexploitediosipadosmobilenotification servicespatchsecurity updateupdate 18.7.8update 26.4.2

What happened

ISC SANS reports Apple released iOS/iPadOS 26.4.2 and iOS/iPadOS 18.7.8 to fix an exploited Notification Services vulnerability tracked as CVE-2026-28950. Devices should be updated promptly to mitigate active exploitation risk.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
sans_isc_diary
Record identifier
feceb024992d3bc9d3f2b942eeae835c7cd1bdce8d05098d5bed22e9d4364c84
Enrichment time
2026-04-23T19:23:47Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Apple Patches Exploited Notification Flaw, (Thu, Apr 23rd) · Baitaphish