Known Vulnerabilities for Swift by Apple
Listed below are 4 of the newest known vulnerabilities associated with "Swift" by "Apple".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-59235 json | Missing Authorization (CWE-862) in BankAccountListController (app/Http/Controllers/Api/BankAccount/BankAccountListController.... | Not Provided | 2026-07-15 | 2026-07-15 |
| CVE-2026-53861 json | OpenClaw before 2026.5.6 contains an allowlist bypass vulnerability in the macOS Swift exec feature that misses combined POSI... | Not Provided | 2026-06-16 | 2026-06-18 |
| CVE-2026-50221 json | In OpenStack Swift before 2.37.2, proxy-server does not strip internal update headers (X-Container-Host, X-Container-Device, ... | Not Provided | 2026-06-23 | 2026-06-23 |
| CVE-2026-49319 json | Remote Keyless Entry System (RKES), using the 433 MHz key fob bearing FCC ID CWTR53R0 manufactured by ALPS ALPINE CO., LTD., ... | Not Provided | 2026-06-25 | 2026-06-26 |
| CVE-2026-49017 json | In OpenStack Swift before 2.36.2 and 2.37.2, s3api middleware enters an infinite loop when processing a truncated aws-chunked... | Not Provided | 2026-05-27 | 2026-06-02 |
| CVE-2026-45799 json | Wire provides gRPC and protocol buffers for Android, Kotlin, Swift, and Java. Prior to 6.3.0 and 7.0.0-alpha03, ByteArrayProt... | Not Provided | 2026-07-17 | 2026-07-20 |
| CVE-2026-44679 json | Tuist is a virtual platform team for Swift app devs. Prior to 1.180.10, the forgot password flow allows an unauthenticated at... | Not Provided | 2026-05-14 | 2026-05-14 |
| CVE-2026-44678 json | Tuist is a virtual platform team for Swift app devs. In 1.180.8 and earlier, the DELETE /api/projects/{account_handle}/{proje... | Not Provided | 2026-05-14 | 2026-05-14 |
| CVE-2026-43823 json | When initializing an RSA public key from DER or PEM bytes throws an error, the EVP_PKEY* is double-freed: first in the catch ... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-43820 json | NIOSSLCertificate._subjectAlternativeNames provides access to the raw bytes for a cert's SANs. NIOSSL provides access to a bu... | Not Provided | 2026-07-23 | 2026-07-23 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Apple | Swift | 5.1.4 | |||
| Application | Apple | Swift | 5.1.1 | |||
| Application | Apple | Swift | 5.1 | |||
| Application | Apple | Swift | 5.0 | |||
| Application | Apple | Swift | 4.1.2 | |||
| Application | Apple | Swift | 4.1.1 | |||
| Application | Apple | Swift | 4.1 | |||
| Application | Apple | Swift | 4.0.3 | |||
| Application | Apple | Swift | 4.0.2 | |||
| Application | Apple | Swift | 4.0 | |||
| Application | Apple | Swift | 3.1.1 | |||
| Application | Apple | Swift | 3.1 | |||
| Application | Apple | Swift | 3.0.2 | |||
| Application | Apple | Swift | 3.0.1 | |||
| Application | Apple | Swift | 3.0 | |||
| Application | Apple | Swift | 2.2.1 | |||
| Application | Apple | Swift | 2.2 |