cbcvebase.

Apple Ios 26 And Ipados vulnerabilities

36 known vulnerabilities affecting apple/ios_26_and_ipados.

Total CVEs
36
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL6HIGH9MEDIUM16LOW5

Vulnerabilities

Page 1 of 2
CVE-2025-6965P2HIGHCVSS 7.2PoCv262025-09-15
CVE-2025-6965 [HIGH] CVE-2025-6965: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-6965 Component: CVE-2025-6965
apple
CVE-2025-43343P3CRITICALCVSS 9.8v262025-09-15
CVE-2025-43343 [CRITICAL] CVE-2025-43343: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-43343 Component: WebKit Impact: Processing maliciously crafted web content may lead to an unexpected process crash Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43419P3HIGHCVSS 8.8v262025-09-15
CVE-2025-43419 [HIGH] CVE-2025-43419: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-43419 Component: WebKit Impact: Processing maliciously crafted web content may lead to memory corruption Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43347P3CRITICALCVSS 9.8v262025-09-15
CVE-2025-43347 [CRITICAL] CVE-2025-43347: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-43347 Component: System Impact: An input validation issue was addressed Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2025-43342P3CRITICALCVSS 9.8v262025-09-15
CVE-2025-43342 [CRITICAL] CVE-2025-43342: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-43342 Component: WebKit Impact: Processing maliciously crafted web content may lead to an unexpected process crash Description: A correctness issue was addressed with improved checks.
apple
CVE-2025-43362P3CRITICALCVSS 9.8v262025-09-15
CVE-2025-43362 [CRITICAL] CVE-2025-43362: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-43362 Component: LaunchServices Impact: An app may be able to monitor keystrokes without user permission Description: The issue was addressed with improved checks.
apple
CVE-2025-43359P3CRITICALCVSS 9.8v262025-09-15
CVE-2025-43359 [CRITICAL] CVE-2025-43359: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-43359 Component: Kernel Impact: A UDP server socket bound to a local interface may become bound to all interfaces Description: A logic issue was addressed with improved state management.
apple
CVE-2025-43358P3HIGHCVSS 8.8v262025-09-15
CVE-2025-43358 [HIGH] CVE-2025-43358: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-43358 Component: Shortcuts Impact: A shortcut may be able to bypass sandbox restrictions Description: A permissions issue was addressed with additional sandbox restrictions.
apple
CVE-2025-31255P3CRITICALCVSS 9.8v262025-09-15
CVE-2025-31255 [CRITICAL] CVE-2025-31255: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-31255 Component: IOKit Impact: An app may be able to access sensitive user data Description: An authorization issue was addressed with improved state management.
apple
CVE-2025-43376P3HIGHCVSS 7.5v262025-09-15
CVE-2025-43376 [HIGH] CVE-2025-43376: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-43376 Component: WebKit Impact: A remote attacker may be able to view leaked DNS queries with Private Relay turned on Description: A logic issue was addressed with improved state management.
apple
CVE-2025-43329P3HIGHCVSS 8.8v262025-09-15
CVE-2025-43329 [HIGH] CVE-2025-43329: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-43329 Component: Sandbox Impact: An app may be able to break out of its sandbox Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-43361P3HIGHCVSS 7.8v262025-09-15
CVE-2025-43361 [HIGH] CVE-2025-43361: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-43361 Component: Audio Impact: A malicious app may be able to read kernel memory Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2025-43372P3HIGHCVSS 7.8v262025-09-15
CVE-2025-43372 [HIGH] CVE-2025-43372: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-43372 Component: CoreMedia Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory Description: The issue was addressed with improved input validation.
apple
CVE-2025-43323P3HIGHCVSS 8.1v262025-09-15
CVE-2025-43323 [HIGH] CVE-2025-43323: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-43323 Component: CloudKit Impact: An app may be able to fingerprint the user Description: This issue was addressed with additional entitlement checks.
apple
CVE-2025-30468P4MEDIUMCVSS 6.5v262025-09-15
CVE-2025-30468 [MEDIUM] CVE-2025-30468: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-30468 Component: Siri Impact: Private Browsing tabs may be accessed without authentication Description: This issue was addressed through improved state management.
apple
CVE-2025-43272P4MEDIUMCVSS 6.5v262025-09-15
CVE-2025-43272 [MEDIUM] CVE-2025-43272: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-43272 Component: WebKit Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43356P4MEDIUMCVSS 6.5v262025-09-15
CVE-2025-43356 [MEDIUM] CVE-2025-43356: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-43356 Component: WebKit Impact: A website may be able to access sensor information without user consent Description: The issue was addressed with improved handling of caches.
apple
CVE-2025-43338P4HIGHCVSS 7.1v262025-09-15
CVE-2025-43338 [HIGH] CVE-2025-43338: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-43338 Component: ImageIO Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2025-31254P4MEDIUMCVSS 5.4v262025-09-15
CVE-2025-31254 [MEDIUM] CVE-2025-31254: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-31254 Component: Safari Impact: Processing maliciously crafted web content may lead to unexpected URL redirection Description: This issue was addressed with improved URL validation.
apple
CVE-2025-43190P4MEDIUMCVSS 5.5v262025-09-15
CVE-2025-43190 [MEDIUM] CVE-2025-43190: iOS 26 and iPadOS 26 Apple Security Update: About the security content of iOS 26 and iPadOS 26 Product: iOS 26 and iPadOS Version: 26 CVE: CVE-2025-43190 Component: Spell Check Impact: An app may be able to access sensitive user data Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
apple
Apple Ios 26 And Ipados vulnerabilities | cvebase