cbcvebase.
CVE-2025-31220
published 2025-05-12

CVE-2025-31220: A privacy issue was addressed by removing sensitive data. This issue is fixed in iPadOS 17.7.7, macOS Sequoia 15.5, macOS Sonoma 14.7.6, macOS Ventura 13.7.6…

PriorityP424medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
EPSS
0.18%
8.2th percentile
A privacy issue was addressed by removing sensitive data. This issue is fixed in iPadOS 17.7.7, macOS Sequoia 15.5, macOS Sonoma 14.7.6, macOS Ventura 13.7.6. A malicious app may be able to read sensitive location information.

Affected

10 ranges
VendorProductVersion rangeFixed in
appleipados< 17.7.717.7.7
appleipados
applemacos< 14.7.614.7.6
applemacos< 15.515.5
applemacos< 13.7.613.7.6
applemacos>= 14.0 < 14.7.614.7.6
applemacos>= 15.0 < 15.515.5
applemacos_sequoia
applemacos_sonoma
applemacos_ventura
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.