Apple App Intents Sandbox Escape Vulnerability

Vulnerability

A logic vulnerability allowing a malicious app to escape its sandbox has been identified in multiple Apple operating systems, including iOS 18.7.9, iPadOS 18.7.9, iOS 26.5, iPadOS 26.5, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, and watchOS 26.5. The vulnerability arises from insufficient restrictions, which could potentially be exploited by apps to access unauthorized resources or perform actions outside their intended scope.

Impact

Exploitation of this vulnerability could lead to unauthorized access to system resources or user data by allowing an app to break free from its sandboxed environment, where it is normally restricted from accessing certain system areas or user information.

Added: May 11, 2026, 9:35 PM
Updated: May 11, 2026, 9:35 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
10.0
exploitability
3.3
remediation
7.7
relevance
8.0
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.