PSA: Make Sure to Update, iOS 16.5, iPadOS 16.5, and macOS 13.4 Address These Three Actively Exploited Vulnerabilities - MacRumors
Skip to Content

PSA: Make Sure to Update, iOS 16.5, iPadOS 16.5, and macOS 13.4 Address These Three Actively Exploited Vulnerabilities

The iOS 16.5, iPadOS 16.5, and macOS 13.4 updates that Apple released today address vulnerabilities that are known to have been exploited by bad actors, which means it is important to update to the new operating systems as soon as you can.

bug security vulnerability issue fix larry
According to Apple's security support documents for iOS and macOS, the updates fix three WebKit vulnerabilities. Two of these issues were addressed in the prior iOS 16.4.1 and macOS 13.3.1 Rapid Security Response updates and are not an issue if you updated, but a third vulnerability is still active until you install the latest updates.

The WebKit security flaw could allow an attacker to break out of the Web Content sandbox, an issue that Apple fixed with improved bounds checks. Apple says that it is aware of a report that this issue may have been actively exploited.

The other two WebKit vulnerabilities were related to processing maliciously crafted web content that could allow for the disclosure of sensitive information or arbitrary code execution.

Related Forums: iOS 16, macOS Ventura

Popular Stories

Apple Event Logo

Apple Just Released a New Accessory

Monday May 4, 2026 8:13 am PDT by
Apple today released a new Pride Edition Sport Loop for the Apple Watch. The band features a rainbow design with 11 colors of woven nylon yarns. The new Pride Edition Sport Loop is available to order now on Apple.com and in the Apple Store app in 40mm, 42mm, and 46mm sizes, and it will be available at Apple Store locations starting later this week. In the U.S., the band costs $49. There...
Instagram Feature 2

PSA: Instagram Encrypted Messaging Ends on Friday, May 8

Tuesday May 5, 2026 8:24 am PDT by
Instagram will remove end-to-end encryption for direct messages between users from May 8, 2026. When the date comes around, Meta will potentially be able to see the contents of all messages between users on the social media platform. Encrypting messages has been an optional feature in Instagram since 2023, but in March of this year the social media platform quietly updated a help page to say ...
iOS 26

Apple Says iOS 26.5 Adds Three New Features to Your iPhone

Tuesday May 5, 2026 7:36 am PDT by
iOS 26.5 includes three new features for iPhones, according to Apple's release notes for the update, which is expected to be released next week. As discovered during beta testing, iOS 26.5 enables end-to-end encryption for RCS messaging between iOS and Android devices. Apple says this security upgrade is limited to supported carriers around the world and will continue to roll out....

Top Rated Comments

TheYayAreaLiving 🎗️ Avatar
39 months ago
Ok, this is very scary! Did anyone catch this under Siri? 😵‍💫🥴🤥



Attachment Image
Score: 8 Votes (Like | Disagree)
39 months ago

Ok, this is very scary! Did anyone catch this under Siri? 😵‍💫🥴🤥


If someone has physical access to your machine, you may have some extra things to worry about
Score: 5 Votes (Like | Disagree)
LV426 Avatar
39 months ago

This update fixed a lot of very serious bugs...

I'm shocked that they were there in the first place.
I’m not shocked in the slightest. iOS is riddled with bugs and there are many more vulnerabilities waiting to be found. Like most software on the planet.
Score: 5 Votes (Like | Disagree)
AppleTO Avatar
39 months ago

Are old versions of iOS and macOS affected?
I wish they would publish this kind of information as well. It would be nice to know if legacy systems may be affected as well.
Score: 5 Votes (Like | Disagree)
39 months ago

Isn't it funny how the more macOS gets more and more locked down (sorry, tamper proof) in the name of security, the more vulnerabilities crop up that are being exploited in the wild months before a patch comes out?
I'm not sure a correlation can be made

If anything, I'd say that macs gaining market share is the reason of such exploits being discovered and new malware created
Score: 4 Votes (Like | Disagree)
39 months ago
So the rapid response was only 66.7% effective.
Score: 4 Votes (Like | Disagree)