Intelligence
mediumVulnerabilityActive

Apple's July Updates Follow Standard Staggered Platform Coverage

Apple's July 2026 updates addressed 187 vulnerabilities across its platforms. Safari targeted macOS 14 and 15, as is standard for the separate browser update, while macOS updates covered versions 14, 15 and 26; Apple identified no known active exploitation.

S
Sebastion

Affected

Apple macOS 14Apple macOS 15Apple macOS 26Apple Safari

Apple's July 2026 security update cycle followed its standard staggered coverage model. The separate Safari update targeted macOS 14 and 15, as usual for systems before macOS 26, while macOS updates covered versions 14, 15 and 26. Other operating-system updates covered the current version 26.

The releases addressed 187 vulnerabilities, many shared across more than one operating system. The source highlighted three possible Gatekeeper bypass issues—CVE-2026-28849, CVE-2026-28900 and CVE-2026-28914—although it did not confirm their relationship to earlier research. Apple did not identify any of the vulnerabilities as already exploited.

Defenders should map Apple's advisory entries to each deployed platform rather than treating the releases as a single uniform bundle. Mixed macOS estates still require separate verification that each supported version received the relevant fixes.

The absence of known exploitation lowers the immediate urgency, but the volume of fixes warrants timely testing and deployment through normal patch-management processes.

Sources