CVE-2026-20685Disclosure(apple / private_cloud_compute)

LOWCVSS 6.5 · MEDIUM

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch apple private_cloud_compute systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

An attacker in a privileged network position may be able to leak sensitive information. A path handling issue was addressed with improved validation. This issue is fixed in PCC Release 5E290.3.

2.3/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-20CWE-22

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • private_cloud_compute

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 10 mentions across 9 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 2 signals
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 5 signals
  • Disclosure: 8 classified signals
  • General: 1 classified signal
  • Peaked 7d ago at 2 mentions (2026-08-10); latest day: 1
  • 10 total mentions across 9 days

Affected systems

Vendors
Products
private_cloud_compute

Deep dive

Activity timeline10 mentions / 9d
01122Mentions · 2026-05-18: 1Mentions · 2026-08-10: 2Mentions · 2026-08-11: 1Mentions · 2026-08-12: 1Mentions · 2026-08-13: 1Mentions · 2026-08-16: 1Mentions · 2026-08-17: 1Mentions · 2026-08-18: 1Mentions · 2026-08-20: 1PoC Mentioned / Linked · 2026-08-13: 1PoC Mentioned / Linked · 2026-08-16: 1Patch / Workaround · 2026-08-10: 1Technical Details · 2026-05-18: 1Technical Details · 2026-08-10: 2Technical Details · 2026-08-11: 1Technical Details · 2026-08-18: 105-1808-1008-1108-1208-1308-1608-1708-1808-20
Signal classification3 categories
Disclosure
880.0%
General
110.0%
Patch
110.0%
Referenced assets9 URLs
Classification over time
DateTotalLabels
2026-05-181
Disclosure1
2026-08-102
General1Patch1
2026-08-111
Disclosure1
2026-08-121
Disclosure1
2026-08-131
Disclosure1
2026-08-161
Disclosure1
2026-08-171
Disclosure1
2026-08-181
Disclosure1
2026-08-201
Disclosure1
Full discourse10 posts
  • N45HT@N45HTOfficial
    Disclosure

    $150,000 Apple Bug Bounty 🍎 [CVE-2026-20685] Beyond Prompt Injection: Hacking Apple's Private Cloud Compute 🤯🔥 🔗 https://blog.sentry.security/beyond-prompt-injection-hacking-apples-private-cloud-compute/ 🔗 https://nvd.nist.gov/vuln/detail/CVE-2026-20685 https://t.co/aJ2zX9kuRd

    Post summary

    The tweet announces a recently identified Apple vulnerability, referencing a blog post and the CVE entry—primarily serving as a disclosure.

    648138224627.1K
    681 followersView on X
  • I'M H4CK3R 42@luckyhacker43
    Disclosure

    $150,000 Apple Bug Bounty 🍎 [CVE-2026-20685] Beyond Prompt Injection: Hacking Apple's Private Cloud Compute 🤯🔥 🔗 https://blog.sentry.security/beyond-prompt-injection-hacking-apples-private-cloud-compute/ 🔗 https://nvd.nist.gov/vuln/detail/CVE-2026-20685 🔗 Join team 👉https://t.me/luckyhacker42 https://t.co/ED3YQf8IaS

    Post summary

    The tweet announces Apple CVE-2026-20685, a $150,000 bug bounty case dubbed Beyond Prompt Injection, and links to a blog post likely containing a PoC, but it does not provide technical details or exploit code.

    2230171888.1K
    5.0K followersView on X
  • I'M H4CK3R 42@luckyhacker43
    Disclosure

    $150,000 Apple Bug Bounty 🍎 [CVE-2026-20685] Beyond Prompt Injection: Hacking Apple's Private Cloud Compute 🤯🔥 🔗 https://blog.sentry.security/beyond-prompt-injection-hacking-apples-private-cloud-compute/ 🔗 https://nvd.nist.gov/vuln/detail/CVE-2026-20685 Join team 👉https://t.me/luckyhacker42 https://t.co/zWFK794pGL

    Post summary

    The post announces CVE-2026-20685 via a bug‑bounty mention and a blog link, indicating a new vulnerability in Apple’s Private Cloud Compute, but provides no exploit, patch, or technical details.

    016092333.4K
    5.0K followersView on X
  • termireum@termireum
    Disclosure

    Drinor Selmanaj was awarded $150,000 for CVE-2026-20685 targeting Apple's Private Cloud Compute. https://blog.sentry.security/beyond-prompt-injection-hacking-apples-private-cloud-compute/

    Post summary

    The post announces that Drinor Selmanaj received a $150,000 reward for discovering CVE-2026-20685, a vulnerability affecting Apple's Private Cloud Compute, without providing further exploit, mitigation, or technical details.

    20077562
    1.5K followersView on X
  • kokumօtօ@__kokumoto
    Disclosure

    Apple Private Cloud Computeにおけるroot権限でのファイル書き込みとAIテレメトリのリダイレクトの脆弱性が発見され、報奨金15万ドルが支払われた。Sentry社創業者CTOのDrinor Selmanaj氏の発見。CVE-2026-20685。細工されたtarファイルでのパストラバーサル。 https://hackread.com/apple-sentry-founder-private-cloud-compute-vulnerability/

    Post summary

    Apple's Private Cloud Compute has a newly disclosed vulnerability (CVE‑2026‑20685) that allows root‑level file writes and AI telemetry redirects via crafted tar files, first identified by Sentry’s CTO. No patch or exploitation status is mentioned in the initial announcement.

    00020852
    7.7K followersView on X
  • セキュリティ対策Lab@securityLab_jp
    Disclosure

    Apple Private Cloud Computeの脆弱性 CVE-2026-20685の発見者へAppleから報奨金 15万ドル(約2,400万円) https://rocket-boys.co.jp/security-measures-lab/apple-private-cloud-compute-vulnerability-cve-2026-20685-bug-bounty/ #セキュリティ対策Lab #security #securitynews #セキュリティ

    Post summary

    Apple announced a $150,000 reward for discovering CVE-2026‑20685 in Apple Private Cloud Compute, indicating the vulnerability’s disclosure.

    00000218
    550 followersView on X
  • KI News Daily@ki_news_daily
    Disclosure

    Apple zahlte 150.000 USD an Forscher nach PCC‑Lücke (CVE-2026-20685). Geleakt: Telemetrie‑Metriken, nicht Prompts oder Tokens. Path‑Traversal nötig; Angriff brauchte privilegierte Netzwerkposition. Finder: Sentry. #kinewsdaily #apple #cybersecurity 🔒

    Post summary

    Apple settled with a researcher for CVE‑2026‑20685, a path‑traversal flaw that required privileged network access; the announcement focuses on the disclosure without mention of exploits, patches, or active attacks.

    0000081
    56 followersView on X
  • T1erOne@tieroneforum
    General

    Эксплуатация path traversal в darwin-init Apple PCC — произвольная запись файлов от root (CVE-2026-20685) https://tier1.life/thread/484 http://tieronemkfevyizxcnt355agysp2iemvhon6iyclwrc7yuc7oszgzrid.onion/thread/484 #articles

    Post summary

    The post announces a path traversal flaw in darwin‑init Apple PCC that permits root-level file writes, but it lacks any proof‑of‑concept, exploit code, patch info, or evidence of active exploitation.

    00000282
    300 followersView on X
  • Windows Forum@windowsforum
    Patch

    ☁️ Apple patched a path-traversal flaw in Private Cloud Compute—but users get no update because the fix lives server-side. Your device is safe-ish; Apple’s cloud did the homework quietly. https://windowsforum.com/windows-news.4/cve-2026-20685-fixed-in-apple-pcc-no-user-update-needed.442220/?utm_source=x&utm_medium=social&utm_campaign=news_node4 #PathTraversal #AppleSecurity #PrivateCloudCompute #Cve202620685 https://t.co/tbd2DJ22gg

    Post summary

    Apple has fixed a path‑traversal flaw in Private Cloud Compute; the patch is applied server‑side, so no user‑initiated update is required.

    0000050
    1.3K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-20685 Path Handling Vulnerability Enabling Information Disclosure in PCC Release 5E290.3 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-20685

    Post summary

    A new path-handling flaw that can lead to information disclosure has been disclosed for PCC Release 5E290.3, with a reference link to a vulnerability database entry.

    0000053
    4.0K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appappleprivate_cloud_compute---

Explore more