CVE-2025-30463
published 2025-03-31CVE-2025-30463: The issue was addressed with improved restriction of data container access. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4. An app may be…
medium5.5CVSS 3.1
AVLACLPRNUIRSUCHINAN
The issue was addressed with improved restriction of data container access. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4. An app may be able to access sensitive user data.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_18.4_and_ipados | — | — |
| apple | ios_and_ipados | < 18.4 | 18.4 |
| apple | ipados | < 18.4 | 18.4 |
| apple | iphone_os | < 18.4 | 18.4 |
| apple | macos | < 15.4 | 15.4 |
| apple | macos_sequoia | — | — |
Apple
CVE-2025-30463: iOS 18.4 and iPadOS 18.4
vendor_apple·2025-03-31·CVSS 5.5
CVE-2025-30463 [MEDIUM] CVE-2025-30463: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-30463
Component: Handoff
Impact: An app may be able to access sensitive user data
Description: The issue was addressed with improved restriction of data container access.
Apple
CVE-2025-30463: macOS Sequoia 15.4
vendor_apple·2025-03-31·CVSS 5.5
CVE-2025-30463 [MEDIUM] CVE-2025-30463: macOS Sequoia 15.4
Apple Security Update: About the security content of macOS Sequoia 15.4
Product: macOS Sequoia
Version: 15.4
CVE: CVE-2025-30463
Component: Handoff
Impact: An app may be able to access sensitive user data
Description: The issue was addressed with improved restriction of data container access.
GHSA
GHSA-qxhm-5vqv-9j5q: The issue was addressed with improved restriction of data container access
ghsa_unreviewed·2025-04-01
CVE-2025-30463 [MEDIUM] CWE-200 GHSA-qxhm-5vqv-9j5q: The issue was addressed with improved restriction of data container access
The issue was addressed with improved restriction of data container access. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4. An app may be able to access sensitive user data.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-03-31
Published