November 3, 2021 · Applied Cybernetics Group
CVE-2020-9859 — Apple Multiple Products
Apple Multiple Products Code Execution Vulnerability
- Added to KEV
2021-11-03- Federal due date
2022-05-03- Vendor
- Apple
- Product
- Multiple Products
- EPSS
- 26.4th percentile (score 0.001, as of
2026-06-08) - NVD CVSS v3.1
- —
- Ransomware use
- Unknown
- Upstream
- https://nvd.nist.gov/vuln/detail/CVE-2020-9859
CISA short description
Apple iOS, iPadOS, macOS, watchOS, and tvOS contain an unspecified vulnerability that may allow an application to execute code with kernel privileges.
Required action
Apply updates per vendor instructions.