CVE-2025-46308
published 2026-06-11CVE-2025-46308: An authorization issue was addressed with improved state management. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4. An app may be able to…
PriorityP426medium5.3CVSS 3.1
AVNACLPRNUINSUCLINAN
EPSS
0.23%
13.8th percentile
An authorization issue was addressed with improved state management. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4. An app may be able to leak sensitive user information.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_and_ipados | < 18.4 | 18.4 |
| apple | ipados | < 18.4 | 18.4 |
| apple | iphone_os | < 18.4 | 18.4 |
| apple | macos | < 15.4 | 15.4 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Apple iOS/iPadOS/macOS up to 18.3 App information disclosure (EUVD-2025-210110)
vuldb·2026-06-11·CVSS 5.3
CVE-2025-46308 [MEDIUM] Apple iOS/iPadOS/macOS up to 18.3 App information disclosure (EUVD-2025-210110)
A vulnerability described as problematic has been identified in Apple iOS, iPadOS and macOS up to 18.3. This affects an unknown part of the component App. Executing a manipulation can lead to information disclosure.
This vulnerability appears as CVE-2025-46308. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is recommended.
GHSA
An authorization issue was addressed with improved state management.
ghsa_unreviewed·2026-06-11
CVE-2025-46308 [MEDIUM] CWE-284 An authorization issue was addressed with improved state management.
An authorization issue was addressed with improved state management. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4. An app may be able to leak sensitive user information.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-06-11
Published