iOS Update Addresses Critical Security Flaw CVE-2026-28950

iOS Update Addresses Critical Security Flaw CVE-2026-28950

First seen 2 May 2026, 22:34 UTC Azat.TvAolNbcpalmsprings 74% similarity 72.8

Article Content

Browse articles
ThreatCluster

On April 22, 2026, Apple published CVE-2026-28950, a critical security flaw that allowed deleted notifications to be retrieved, posing a significant privacy risk. The issue affects all iPhones starting from the iPhone 11 and several iPad models. In response, Apple released iOS update 26.4.2 on May 2, 2026, which addresses this vulnerability along with a broader logging vulnerability related to data redaction. Users are strongly encouraged to install the update immediately to enhance their device's security and performance. The update is relatively small, typically under 1GB, and includes improvements in keyboard responsiveness and battery life. The flaw was first highlighted in a YouTube video, which raised awareness about the risks involved. This incident underscores the importance of timely software updates in maintaining user privacy and device integrity.

Key Points: • CVE-2026-28950 allows retrieval of deleted notifications, posing a privacy risk. • iOS update 26.4.2 released on May 2, 2026, addresses this critical flaw. • Users are advised to update their devices immediately for optimal security.

ThreatCluster AI

Timeline

2026-04-22
CVE-2026-28950 published, revealing critical notification flaw.
2026-05-02
iOS update 26.4.2 released to fix CVE-2026-28950.
Recent
Flaw highlighted in YouTube video by iDeviceHelp.

Community

Browse all →