Apple Ios 18.4 And Ipados vulnerabilities
77 known vulnerabilities affecting apple/ios_18.4_and_ipados.
Total CVEs
77
CISA KEV
0
Public exploits
0
Exploited in wild
1
Severity breakdown
CRITICAL12HIGH18MEDIUM44LOW3
Vulnerabilities
Page 2 of 4
CVE-2025-24221P3HIGHCVSS 7.5v18.42025-03-31
CVE-2025-24221 [HIGH] CVE-2025-24221: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-24221
Component: Accounts
Impact: Sensitive keychain data may be accessible from an iOS backup
Description: This issue was addressed with improved data access restriction.
apple
CVE-2025-24238P3HIGHCVSS 7.8v18.42025-03-31
CVE-2025-24238 [HIGH] CVE-2025-24238: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-24238
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
apple
CVE-2025-30456P3HIGHCVSS 7.8v18.42025-03-31
CVE-2025-30456 [HIGH] CVE-2025-30456: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-30456
Component: DiskArbitration
Impact: An app may be able to gain root privileges
Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
apple
CVE-2024-9681P3MEDIUMCVSS 6.5v18.42025-03-31
CVE-2024-9681 [MEDIUM] CVE-2024-9681: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2024-9681
Component: CVE-2024-9681
apple
CVE-2025-30471P3HIGHCVSS 7.5v18.42025-03-31
CVE-2025-30471 [HIGH] CVE-2025-30471: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-30471
Component: Security
Impact: A remote user may be able to cause a denial-of-service
Description: A validation issue was addressed with improved logic.
apple
CVE-2024-48958P3HIGHCVSS 7.8v18.42025-03-31
CVE-2024-48958 [HIGH] CVE-2024-48958: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2024-48958
Component: CVE-2024-48958
Impact: Processing maliciously crafted web content may result in the disclosure of process memory
Description: A logic issue was addressed with improved checks.
apple
CVE-2025-24095P3HIGHCVSS 7.6v18.42025-03-31
CVE-2025-24095 [HIGH] CVE-2025-24095: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-24095
Component: RepairKit
Impact: An app may be able to bypass Privacy preferences
Description: This issue was addressed with additional entitlement checks.
apple
CVE-2025-24209P3HIGHCVSS 7.0v18.42025-03-31
CVE-2025-24209 [HIGH] CVE-2025-24209: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-24209
Component: WebKit
Impact: Processing maliciously crafted web content may lead to an unexpected process crash
Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2025-24173P3HIGHCVSS 7.8v18.42025-03-31
CVE-2025-24173 [HIGH] CVE-2025-24173: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-24173
Component: Power Services
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed with additional entitlement checks.
apple
CVE-2025-31184P3HIGHCVSS 7.8v18.42025-03-31
CVE-2025-31184 [HIGH] CVE-2025-31184: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-31184
Component: Web Extensions
Impact: An app may gain unauthorized access to Local Network
Description: This issue was addressed with improved permissions checking.
apple
CVE-2025-30432P3MEDIUMCVSS 6.4v18.42025-03-31
CVE-2025-30432 [MEDIUM] CVE-2025-30432: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-30432
Component: Kernel
Impact: A malicious app may be able to attempt passcode entries on a locked device and thereby cause escalating time delays after 4 failures
Description: A logic issue was addressed with improved state management.
apple
CVE-2025-27113P3LOWCVSS 2.9v18.42025-03-31
CVE-2025-27113 [LOW] CVE-2025-27113: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-27113
Component: CVE-2025-27113
apple
CVE-2025-24194P4HIGHCVSS 7.8v18.42025-03-31
CVE-2025-24194 [HIGH] CVE-2025-24194: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-24194
Component: CVE-2024-48958
Impact: Processing maliciously crafted web content may result in the disclosure of process memory
Description: A logic issue was addressed with improved checks.
apple
CVE-2025-31192P4MEDIUMCVSS 6.7v18.42025-03-31
CVE-2025-31192 [MEDIUM] CVE-2025-31192: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-31192
Component: Safari
Impact: A website may be able to access sensor information without user consent
Description: The issue was addressed with improved checks.
apple
CVE-2025-24192P4MEDIUMCVSS 6.5v18.42025-03-31
CVE-2025-24192 [MEDIUM] CVE-2025-24192: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-24192
Component: Web Extensions
Impact: Visiting a website may leak sensitive data
Description: A script imports issue was addressed with improved isolation.
apple
CVE-2025-24257P4HIGHCVSS 7.1v18.42025-03-31
CVE-2025-24257 [HIGH] CVE-2025-24257: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-24257
Component: IOGPUFamily
Impact: An app may be able to cause unexpected system termination or write kernel memory
Description: An out-of-bounds write issue was addressed with improved input validation.
apple
CVE-2025-24212P4MEDIUMCVSS 6.3v18.42025-03-31
CVE-2025-24212 [MEDIUM] CVE-2025-24212: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-24212
Component: Calendar
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed with improved checks.
apple
CVE-2025-30429P4MEDIUMCVSS 6.3v18.42025-03-31
CVE-2025-30429 [MEDIUM] CVE-2025-30429: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-30429
Component: Calendar
Impact: An app may be able to break out of its sandbox
Description: A path handling issue was addressed with improved validation.
apple
CVE-2025-24208P4MEDIUMCVSS 6.1v18.42025-03-31
CVE-2025-24208 [MEDIUM] CVE-2025-24208: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-24208
Component: WebKit
Impact: Loading a malicious iframe may lead to a cross-site scripting attack
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-24270P4MEDIUMCVSS 5.7v18.42025-03-31
CVE-2025-24270 [MEDIUM] CVE-2025-24270: iOS 18.4 and iPadOS 18.4
Apple Security Update: About the security content of iOS 18.4 and iPadOS 18.4
Product: iOS 18.4 and iPadOS
Version: 18.4
CVE: CVE-2025-24270
Component: AirPlay
Impact: An attacker on the local network may be able to leak sensitive user information
Description: This issue was addressed by removing the vulnerable code.
apple