
CVE-2026-20637-AppleSEPKeyStore-UAF
CVE-2026-20637: AppleSEPKeyStore Use-After-Free — iOS/macOS kernel vulnerability (patched in 26.4)

CVE-2026-20637: AppleSEPKeyStore Use-After-Free — iOS/macOS kernel vulnerability (patched in 26.4)

UAF and AOP coprocessor panic in IOHIDEventServiceFastPathUserClient. No entitlements, reachable from app sandbox.

This repo documents a vulnerability in Siri Shortcuts and Shared Web Credentials (SWC) allowing malformed payloads to persistently execute, trigger…

iOS Bluetooth PAN vulnerability that opens USB port 62078 and displays Ethernet icon without any adapter (€0). Apple sells a €89.95 adapter for the…

Extraction of iMessage Data via XSS

[CVE-2019-8389] An exploit code for exploiting a local file read vulnerability in Musicloud v1.6 iOS Application

POC: Heap buffer overflow in the networking code in the XNU operating system kernel

CVE-2016-4657 web-kit vulnerability for ios 9.3, nintendo switch browser vulnerability

A sandbox escape based on the proof-of-concept (CVE-2018-4087) by Rani Idan (Zimperium)

Patch iOS SSL vulnerability (CVE-2014-1266)

A fully functional untethered iOS 16-16-4 jailbreak using the CVE-2023-23531 vulnerability

Exploit for CVE-2018-4407-Memory Corruption

Kernel info leak Proof of Concept patched in iOS 26.4 / macOS 26.4

CVE-2025-43300: iOS/macOS DNG Image Processing Memory Corruption

Public disclosure of CVE-2025-31200 – Zero-click RCE in iOS 18.X via AudioConverterService and malicious audio file.

Slightly improved exploit of the CVE-2025-24203 iOS vulnerability by Ian Beer of Google Project Zero

Proof-of-concept and write-up for the CVE-2022-32832 vulnerability patched in iOS 15.6