Apple releases iOS 26.7.1 to patch actively exploited CoreGraphics flaw
Apple issued iOS 26.7.1 for iPhones that haven't updated to iOS 27, alongside iOS 27.0.1, iPadOS 27.0.1 and several macOS updates. The update fixes a single CoreGraphics vulnerability, CVE-2026-86950, an out-of-bounds write bug that could allow arbitrary code execution when processing a malicious file, which Apple says was exploited in a highly sophisticated attack on specific targeted individuals.
GoKawiil's interpretation of the reporting above, not reported fact.
Because Apple confirms the flaw was already used against targeted individuals, users on older iOS 26 builds remain exposed until they install this patch, making it a priority update rather than routine maintenance. The fix's discovery being credited to Meta's security team suggests such vulnerabilities are being actively hunted across the industry, not just by Apple.
- iOS 26.7.1 patches one CoreGraphics security flaw (CVE-2026-86950) already exploited in targeted attacks.
- The update targets iPhone 11 and later plus several iPad models still on iOS 26/iPadOS 26.
- Apple simultaneously released iOS 27.0.1, iPadOS 27.0.1, and macOS updates as bug-fix follow-ups to last month's major releases.
Apple iPhone 16 — Since this update is about keeping iPhones secure, it's a good reminder that newer iPhones get the latest iOS versions and security patches fastest. The iPhone 16 is Apple's current flagship, ready to run iOS 26 and the upcoming iOS 27 features. Staying current with hardware and software is the best way to stay protected against these kinds of exploits.
See Apple iPhone 16 on Amazon → Affiliate link — we may earn a commission on purchases, at no extra cost to you. Product picked by AI based on this article; it is not a tested recommendation.Source: 9to5mac.com — Ryan Christoffel, 2026-09-28
Published there as: “iOS 26.7.1 available now for iPhone with security fixes”
Read the original report → The summary and analysis above are GoKawiil's own, written from reporting by the source above. Facts and quotes belong to the original publisher.