cbcvebase.

Apple Ios 26.1 And Ipados vulnerabilities

62 known vulnerabilities affecting apple/ios_26.1_and_ipados.

Total CVEs
62
CISA KEV
2
actively exploited
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH16MEDIUM41LOW5

Vulnerabilities

Page 1 of 4
CVE-2025-43494HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43494 [HIGH] CVE-2025-43494: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43494 Component: Mail Impact: An attacker may be able to cause a persistent denial-of-service Description: A mail header parsing issue was addressed with improved checks.
apple
CVE-2025-43449HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43449 [HIGH] CVE-2025-43449: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43449 Impact: A malicious app may be able to track users between installs Description: The issue was addressed with improved handling of caches.
apple
CVE-2025-43462HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43462 [HIGH] CVE-2025-43462: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43462 Impact: An app may be able to cause unexpected system termination or corrupt kernel memory Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43502HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43502 [HIGH] CVE-2025-43502: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43502 Component: Safari Impact: An app may be able to bypass certain Privacy preferences Description: A privacy issue was addressed by removing sensitive data.
apple
CVE-2025-43500HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43500 [HIGH] CVE-2025-43500: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43500 Component: Sandbox Profiles Impact: An app may be able to access sensitive user data Description: A privacy issue was addressed with improved handling of user preferences.
apple
CVE-2025-43433HIGHCVSS 8.8v26.12025-11-03
CVE-2025-43433 [HIGH] CVE-2025-43433: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43433 Component: WebKit Impact: Processing maliciously crafted web content may lead to memory corruption Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43510HIGHCVSS 7.8KEVv26.12025-11-03
CVE-2025-43510 [HIGH] CVE-2025-43510: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43510 Component: Kernel Impact: A malicious application may cause unexpected changes in memory shared between processes Description: A memory corruption issue was addressed with improved lock state checking.
apple
CVE-2025-43386HIGHCVSS 7.8v26.12025-11-03
CVE-2025-43386 [HIGH] CVE-2025-43386: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43386 Component: Model I/O Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2025-43413HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43413 [HIGH] CVE-2025-43413: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43413 Component: Kernel Impact: A malicious application may be able to cause unexpected system termination or write kernel memory Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2025-43450HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43450 [HIGH] CVE-2025-43450: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43450 Component: Camera Impact: An app may be able to learn information about the current camera view before being granted camera access Description: A logic issue was addressed with improved checks.
apple
CVE-2025-43431HIGHCVSS 8.8v26.12025-11-03
CVE-2025-43431 [HIGH] CVE-2025-43431: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43431 Component: WebKit Impact: Processing maliciously crafted web content may lead to memory corruption Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43480HIGHCVSS 8.1v26.12025-11-03
CVE-2025-43480 [HIGH] CVE-2025-43480: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43480 Component: WebKit Impact: A malicious website may exfiltrate data cross-origin Description: The issue was addressed with improved checks.
apple
CVE-2025-43407HIGHCVSS 7.8v26.12025-11-03
CVE-2025-43407 [HIGH] CVE-2025-43407: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43407 Component: Assets Impact: An app may be able to break out of its sandbox Description: This issue was addressed with improved entitlements.
apple
CVE-2025-43436HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43436 [HIGH] CVE-2025-43436: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43436 Component: CoreServices Impact: An app may be able to enumerate a user's installed apps Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-43454HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43454 [HIGH] CVE-2025-43454: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43454 Component: Siri Impact: A device may persistently fail to lock Description: This issue was addressed through improved state management.
apple
CVE-2025-43496HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43496 [HIGH] CVE-2025-43496: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43496 Component: Mail Drafts Impact: Remote content may be loaded even when the 'Load Remote Images' setting is turned off Description: The issue was addressed by adding additional logic.
apple
CVE-2025-43434MEDIUMCVSS 4.3v26.12025-11-03
CVE-2025-43434 [MEDIUM] CVE-2025-43434: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43434 Component: WebKit Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2025-46316MEDIUMCVSS 4.3v26.12025-11-03
CVE-2025-46316 [MEDIUM] CVE-2025-46316: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-46316 Component: QuickLook Impact: Processing a maliciously crafted Pages document may result in unexpected termination or disclosure of process memory Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2025-43383MEDIUMCVSS 4.3v26.12025-11-03
CVE-2025-43383 [MEDIUM] CVE-2025-43383: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43383 Component: Model I/O Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2025-43432MEDIUMCVSS 4.3v26.12025-11-03
CVE-2025-43432 [MEDIUM] CVE-2025-43432: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43432 Component: WebKit Impact: Processing maliciously crafted web content may lead to an unexpected process crash Description: A use-after-free issue was addressed with improved memory management.
apple