SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-87931

CRITICAL · CVSS 9.6 EPSS 0.45%

Source: NVD + CISA KEV + EPSS · Published 2026-09-10 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

A critical buffer overflow vulnerability exists in the Apple Notification Center Service Event Handler of the Behavioral Technology Group Pavlok Behavioral Conditioning Wearable, affecting versions up to 20260707. This flaw allows an attacker within the local network to manipulate the affected component, potentially leading to unauthorized access or control over the device. Organizations using this wearable should prioritize immediate remediation efforts due to the severity of the vulnerability and the lack of vendor response.

CVE
CVE-2026-87931
Severity
CRITICAL
CVSS
9.6
EPSS
0.45%

Original NVD Description

A vulnerability has been found in Behavioral Technology Group Pavlok Behavioral Conditioning Wearable up to 20260707. Impacted is an unknown function of the component Apple Notification Center Service Event Handler. The manipulation leads to buffer overflow. The attack must be carried out from within the local network. The vendor was contacted early about this disclosure but did not respond in any way.