Critical
CVE-2026-86950
Apple CoreGraphics Zero-Day Vulnerability CVE-2026-86950 Exploited in Targeted Attacks
Vendor / product: Apple CoreGraphics
Event date: 2026-09-28
Public PoC: Yes
First tracked by RiskWire: 2026-09-22
Sources & citations (24)
- F5 patches BIG-IP APM zero-day flaw exploited in RCE attacks bleepingcomputer.com · 2026-09-23
- The OAuth Profile Is the Door: F5 BIG-IP APM's Heap Overflow Turns a Network Security Appliance Into an Unauthenticated Entry Point tech.yahoo.com · 2026-09-22
- F5 Patches Critical BIG-IP APM Zero-Day Exploited for Unauthenticated RCE on OAuth Servers thehackernews.com · 2026-09-23
- Critical F5 BIG-IP Vulnerability Exploited as Zero-Day securityweek.com · 2026-09-23
- Hackers Exploiting F5 BIG-IP OAuth Server 0-day Flaw to Gain Remote Code Execution cybersecuritynews.com · 2026-09-23
- Critical F5 BIG-IP APM Flaw Actively Exploited for Remote Code Execution gbhackers.com · 2026-09-23
- F5 BIG-IP APM Zero-Day Exploited in Zero-Day RCE Attacks securityaffairs.com · 2026-09-23
- F5 patches an exploited BIG-IP APM flaw affecting some OAuth server deployments · Digg digg.com · 2026-09-23
- F5 fixes actively exploited zero-day flaw in BIG-IP APM networkworld.com · 2026-09-24
- Someone's attacking a critical 0-day RCE in F5 BIG-IP APM theregister.com · 2026-09-23
- F5 BIG-IP APM CVE-2026-94127: Pre-authentication RCE Zero-Day Targeting OAuth Configurations dev.to · 2026-09-24
- F5 patches critical zero-day flaw exploited in BIG-IP APM scworld.com · 2026-09-24
- SlowMist Warns Apple Zero-Day May Put Crypto Wallet Data at Risk cryptotimes.io · 2026-09-29
- Apple releases critical update to address zero-day vulnerability linked to crypto wallet theft kucoin.com · 2026-09-29
- Apple Patches Zero-Day Vulnerability Linked to Crypto Wallet phemex.com · 2026-09-29
- Apple patches CoreGraphics zero-day flaw exploited in attacks bleepingcomputer.com · 2026-09-29
- Apple Patches Meta-Reported Zero-Day Linked to ‘Extremely Sophisticated Attack' securityweek.com · 2026-09-29
- Apple Patches CoreGraphics Flaw Possibly Exploited in Targeted Attacks ground.news · 2026-09-28
- Critical Apple Zero-Day Vulnerability Actively Exploited in Attacks cybersecuritynews.com · 2026-09-29
- macOS Tahoe 26.7.1 patches a flaw linked to targeted attacks macobserver.com · 2026-09-28
+4 more sources
References
See CVE-2026-86950 in context
RiskWire tracks every exploited CVE this week, cross-referenced against CISA KEV with federal remediation deadlines. Filtered to your vendor stack.
Book a 20-min demo →