Apple Ios 26.1 And Ipados vulnerabilities
62 known vulnerabilities affecting apple/ios_26.1_and_ipados.
Total CVEs
62
CISA KEV
2
actively exploited
Public exploits
0
Exploited in wild
2
Severity breakdown
HIGH16MEDIUM41LOW5
Vulnerabilities
Page 2 of 4
CVE-2025-43448P4MEDIUMCVSS 6.3v26.12025-11-03
CVE-2025-43448 [MEDIUM] CVE-2025-43448: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43448
Component: CloudKit
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2025-43444P4MEDIUMCVSS 5.3v26.12025-11-03
CVE-2025-43444 [MEDIUM] CVE-2025-43444: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43444
Component: Installer
Impact: An app may be able to fingerprint the user
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-43424P4MEDIUMCVSS 6.5v26.12025-11-03
CVE-2025-43424 [MEDIUM] CVE-2025-43424: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43424
Component: Multi-Touch
Impact: A malicious HID device may cause an unexpected process crash
Description: The issue was addressed with improved bounds checks.
apple
CVE-2025-43389P4MEDIUMCVSS 5.5v26.12025-11-03
CVE-2025-43389 [MEDIUM] CVE-2025-43389: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43389
Component: Notes
Impact: An app may be able to access sensitive user data
Description: A privacy issue was addressed by removing the vulnerable code.
apple
CVE-2025-43495P4MEDIUMCVSS 5.4v26.12025-11-03
CVE-2025-43495 [MEDIUM] CVE-2025-43495: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43495
Component: WebKit
Impact: An app may be able to monitor keystrokes without user permission
Description: The issue was addressed with improved checks.
apple
CVE-2025-43426P4MEDIUMCVSS 5.5v26.12025-11-03
CVE-2025-43426 [MEDIUM] CVE-2025-43426: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43426
Component: Contacts
Impact: An app may be able to access sensitive user data
Description: A logging issue was addressed with improved data redaction.
apple
CVE-2025-43379P4MEDIUMCVSS 5.5v26.12025-11-03
CVE-2025-43379 [MEDIUM] CVE-2025-43379: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43379
Component: AppleMobileFileIntegrity
Impact: An app may be able to access protected user data
Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2025-43439P4MEDIUMCVSS 5.5v26.12025-11-03
CVE-2025-43439 [MEDIUM] CVE-2025-43439: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43439
Component: On-device Intelligence
Impact: An app may be able to fingerprint the user
Description: A privacy issue was addressed by removing sensitive data.
apple
CVE-2025-43429P4MEDIUMCVSS 4.3v26.12025-11-03
CVE-2025-43429 [MEDIUM] CVE-2025-43429: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43429
Component: WebKit
Impact: Processing maliciously crafted web content may lead to an unexpected process crash
Description: A buffer overflow was addressed with improved bounds checking.
apple
CVE-2025-43391P4MEDIUMCVSS 5.5v26.12025-11-03
CVE-2025-43391 [MEDIUM] CVE-2025-43391: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43391
Component: Photos
Impact: An app may be able to access sensitive user data
Description: A privacy issue was addressed with improved handling of temporary files.
apple
CVE-2025-43498P4MEDIUMCVSS 5.5v26.12025-11-03
CVE-2025-43498 [MEDIUM] CVE-2025-43498: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43498
Component: FileProvider
Impact: An app may be able to access sensitive user data
Description: An authorization issue was addressed with improved state management.
apple
CVE-2025-43434P4MEDIUMCVSS 4.3v26.12025-11-03
CVE-2025-43434 [MEDIUM] CVE-2025-43434: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43434
Component: WebKit
Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash
Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2025-43438P4MEDIUMCVSS 4.3v26.12025-11-03
CVE-2025-43438 [MEDIUM] CVE-2025-43438: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43438
Component: WebKit
Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash
Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2025-43455P4MEDIUMCVSS 5.5v26.12025-11-03
CVE-2025-43455 [MEDIUM] CVE-2025-43455: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43455
Impact: A malicious app may be able to take a screenshot of sensitive information in embedded views
Description: A privacy issue was addressed with improved checks.
apple
CVE-2025-43445P4MEDIUMCVSS 4.3v26.12025-11-03
CVE-2025-43445 [MEDIUM] CVE-2025-43445: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43445
Component: CoreText
Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2025-43383P4MEDIUMCVSS 4.3v26.12025-11-03
CVE-2025-43383 [MEDIUM] CVE-2025-43383: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43383
Component: Model I/O
Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory
Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2025-43384P4MEDIUMCVSS 4.3v26.12025-11-03
CVE-2025-43384 [MEDIUM] CVE-2025-43384: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43384
Component: Model I/O
Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory
Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2025-43385P4MEDIUMCVSS 4.3v26.12025-11-03
CVE-2025-43385 [MEDIUM] CVE-2025-43385: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43385
Component: Model I/O
Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory
Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2025-43441P4MEDIUMCVSS 4.3v26.12025-11-03
CVE-2025-43441 [MEDIUM] CVE-2025-43441: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43441
Component: WebKit
Impact: Processing maliciously crafted web content may lead to an unexpected process crash
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43430P4MEDIUMCVSS 4.3v26.12025-11-03
CVE-2025-43430 [MEDIUM] CVE-2025-43430: iOS 26.1 and iPadOS 26.1
Apple Security Update: About the security content of iOS 26.1 and iPadOS 26.1
Product: iOS 26.1 and iPadOS
Version: 26.1
CVE: CVE-2025-43430
Component: WebKit
Impact: Processing maliciously crafted web content may lead to an unexpected process crash
Description: This issue was addressed through improved state management.
apple