SecuFocus
BriefAnnouncements

Apple ships iOS 27.0.1 with no published CVE

On 28 September 2026, Apple lists iOS 27.0.1, iPadOS 27.0.1 and macOS Golden Gate 27.0.1. The security releases page says these updates have no published CVE entries.

Illustration, not an Apple screenshot.

Original AI-generated illustration · SecuFocus

At a glance

Key points

This is not a named flaw. It is a security update for which Apple publishes no CVE. We did not install these versions.

What changes

Apple’s security releases page, read on 3 October 2026, lists iOS 27.0.1 and iPadOS 27.0.1 for iPhone 11 and later, and for a set of iPads starting with the 12.9-inch iPad Pro, 4th generation. The date on the row is 28 September 2026.

macOS Golden Gate 27.0.1 sits on the same date. Apple writes, for both entries, that the update has no published CVE entries. That is not the same as saying nothing was fixed.

What leaves the device

An Apple update contacts Apple to download. This page does not describe which data leaves during installation. It also does not say what the update changes in the system.

What we did not check

We did not install iOS 27.0.1 or macOS Golden Gate 27.0.1. We did not compare the system before and after. No published CVE is not proof that nothing was patched.

The choice

If your iPhone, iPad or Mac offers 27.0.1, Apple’s page is a reason to install it, not a flaw bulletin to study. Take the update. Do not treat it as a named fix.

Check and explore

Sources for this article

Numbers connect each reference to the passages that use it. Dates show when the documentation was consulted.

This article draws on the sources above. The exercises are for you to try on your devices; SecuFocus does not present them as tests carried out by its editorial team. Interfaces and features can change. Method and corrections.

Cite this article

Keep this reference with the article when you save or share it.