cbcvebase.

Apple Ios 26.1 And Ipados vulnerabilities

62 known vulnerabilities affecting apple/ios_26.1_and_ipados.

Total CVEs
62
CISA KEV
2
actively exploited
Public exploits
0
Exploited in wild
2
Severity breakdown
HIGH16MEDIUM41LOW5

Vulnerabilities

Page 1 of 4
CVE-2025-43510P1HIGHCVSS 7.8KEVv26.12025-11-03
CVE-2025-43510 [HIGH] CVE-2025-43510: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43510 Component: Kernel Impact: A malicious application may cause unexpected changes in memory shared between processes Description: A memory corruption issue was addressed with improved lock state checking.
apple
CVE-2025-43520P1MEDIUMCVSS 5.5KEVv26.12025-11-03
CVE-2025-43520 [MEDIUM] CVE-2025-43520: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43520 Component: Kernel Impact: A malicious application may be able to cause unexpected system termination or write kernel memory Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2025-43433P3HIGHCVSS 8.8v26.12025-11-03
CVE-2025-43433 [HIGH] CVE-2025-43433: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43433 Component: WebKit Impact: Processing maliciously crafted web content may lead to memory corruption Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43431P3HIGHCVSS 8.8v26.12025-11-03
CVE-2025-43431 [HIGH] CVE-2025-43431: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43431 Component: WebKit Impact: Processing maliciously crafted web content may lead to memory corruption Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43413P3HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43413 [HIGH] CVE-2025-43413: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43413 Component: Kernel Impact: A malicious application may be able to cause unexpected system termination or write kernel memory Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2025-43500P3HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43500 [HIGH] CVE-2025-43500: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43500 Component: Sandbox Profiles Impact: An app may be able to access sensitive user data Description: A privacy issue was addressed with improved handling of user preferences.
apple
CVE-2025-43496P3HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43496 [HIGH] CVE-2025-43496: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43496 Component: Mail Drafts Impact: Remote content may be loaded even when the 'Load Remote Images' setting is turned off Description: The issue was addressed by adding additional logic.
apple
CVE-2025-43480P3HIGHCVSS 8.1v26.12025-11-03
CVE-2025-43480 [HIGH] CVE-2025-43480: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43480 Component: WebKit Impact: A malicious website may exfiltrate data cross-origin Description: The issue was addressed with improved checks.
apple
CVE-2025-43436P3HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43436 [HIGH] CVE-2025-43436: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43436 Component: CoreServices Impact: An app may be able to enumerate a user's installed apps Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-43502P3HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43502 [HIGH] CVE-2025-43502: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43502 Component: Safari Impact: An app may be able to bypass certain Privacy preferences Description: A privacy issue was addressed by removing sensitive data.
apple
CVE-2025-43454P3HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43454 [HIGH] CVE-2025-43454: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43454 Component: Siri Impact: A device may persistently fail to lock Description: This issue was addressed through improved state management.
apple
CVE-2025-43449P3HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43449 [HIGH] CVE-2025-43449: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43449 Impact: A malicious app may be able to track users between installs Description: The issue was addressed with improved handling of caches.
apple
CVE-2025-43450P3HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43450 [HIGH] CVE-2025-43450: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43450 Component: Camera Impact: An app may be able to learn information about the current camera view before being granted camera access Description: A logic issue was addressed with improved checks.
apple
CVE-2025-43386P3HIGHCVSS 7.8v26.12025-11-03
CVE-2025-43386 [HIGH] CVE-2025-43386: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43386 Component: Model I/O Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2025-43462P3HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43462 [HIGH] CVE-2025-43462: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43462 Impact: An app may be able to cause unexpected system termination or corrupt kernel memory Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43494P3HIGHCVSS 7.5v26.12025-11-03
CVE-2025-43494 [HIGH] CVE-2025-43494: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43494 Component: Mail Impact: An attacker may be able to cause a persistent denial-of-service Description: A mail header parsing issue was addressed with improved checks.
apple
CVE-2025-43407P3HIGHCVSS 7.8v26.12025-11-03
CVE-2025-43407 [HIGH] CVE-2025-43407: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43407 Component: Assets Impact: An app may be able to break out of its sandbox Description: This issue was addressed with improved entitlements.
apple
CVE-2025-43457P4MEDIUMCVSS 6.5v26.12025-11-03
CVE-2025-43457 [MEDIUM] CVE-2025-43457: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43457 Component: WebKit Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2025-43507P4MEDIUMCVSS 6.5v26.12025-11-03
CVE-2025-43507 [MEDIUM] CVE-2025-43507: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43507 Component: Find My Impact: An app may be able to fingerprint the user Description: A privacy issue was addressed by moving sensitive data.
apple
CVE-2025-43440P4MEDIUMCVSS 6.5v26.12025-11-03
CVE-2025-43440 [MEDIUM] CVE-2025-43440: iOS 26.1 and iPadOS 26.1 Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1 Product: iOS 26.1 and iPadOS Version: 26.1 CVE: CVE-2025-43440 Component: WebKit Impact: Processing maliciously crafted web content may lead to an unexpected process crash Description: This issue was addressed with improved checks
apple