Apple Ios 26 And Ipados vulnerabilities
36 known vulnerabilities affecting apple/ios_26_and_ipados.
Total CVEs
36
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL6HIGH9MEDIUM16LOW5
Vulnerabilities
Page 1 of 2
CVE-2025-6965P2HIGHCVSS 7.2PoCv262025-09-15
CVE-2025-6965 [HIGH] CVE-2025-6965: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-6965
Component: CVE-2025-6965
apple
CVE-2025-43343P3CRITICALCVSS 9.8v262025-09-15
CVE-2025-43343 [CRITICAL] CVE-2025-43343: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-43343
Component: WebKit
Impact: Processing maliciously crafted web content may lead to an unexpected process crash
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43419P3HIGHCVSS 8.8v262025-09-15
CVE-2025-43419 [HIGH] CVE-2025-43419: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-43419
Component: WebKit
Impact: Processing maliciously crafted web content may lead to memory corruption
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43347P3CRITICALCVSS 9.8v262025-09-15
CVE-2025-43347 [CRITICAL] CVE-2025-43347: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-43347
Component: System
Impact: An input validation issue was addressed
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2025-43342P3CRITICALCVSS 9.8v262025-09-15
CVE-2025-43342 [CRITICAL] CVE-2025-43342: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-43342
Component: WebKit
Impact: Processing maliciously crafted web content may lead to an unexpected process crash
Description: A correctness issue was addressed with improved checks.
apple
CVE-2025-43362P3CRITICALCVSS 9.8v262025-09-15
CVE-2025-43362 [CRITICAL] CVE-2025-43362: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-43362
Component: LaunchServices
Impact: An app may be able to monitor keystrokes without user permission
Description: The issue was addressed with improved checks.
apple
CVE-2025-43359P3CRITICALCVSS 9.8v262025-09-15
CVE-2025-43359 [CRITICAL] CVE-2025-43359: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-43359
Component: Kernel
Impact: A UDP server socket bound to a local interface may become bound to all interfaces
Description: A logic issue was addressed with improved state management.
apple
CVE-2025-43358P3HIGHCVSS 8.8v262025-09-15
CVE-2025-43358 [HIGH] CVE-2025-43358: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-43358
Component: Shortcuts
Impact: A shortcut may be able to bypass sandbox restrictions
Description: A permissions issue was addressed with additional sandbox restrictions.
apple
CVE-2025-31255P3CRITICALCVSS 9.8v262025-09-15
CVE-2025-31255 [CRITICAL] CVE-2025-31255: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-31255
Component: IOKit
Impact: An app may be able to access sensitive user data
Description: An authorization issue was addressed with improved state management.
apple
CVE-2025-43376P3HIGHCVSS 7.5v262025-09-15
CVE-2025-43376 [HIGH] CVE-2025-43376: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-43376
Component: WebKit
Impact: A remote attacker may be able to view leaked DNS queries with Private Relay turned on
Description: A logic issue was addressed with improved state management.
apple
CVE-2025-43329P3HIGHCVSS 8.8v262025-09-15
CVE-2025-43329 [HIGH] CVE-2025-43329: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-43329
Component: Sandbox
Impact: An app may be able to break out of its sandbox
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-43361P3HIGHCVSS 7.8v262025-09-15
CVE-2025-43361 [HIGH] CVE-2025-43361: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-43361
Component: Audio
Impact: A malicious app may be able to read kernel memory
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2025-43372P3HIGHCVSS 7.8v262025-09-15
CVE-2025-43372 [HIGH] CVE-2025-43372: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-43372
Component: CoreMedia
Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory
Description: The issue was addressed with improved input validation.
apple
CVE-2025-43323P3HIGHCVSS 8.1v262025-09-15
CVE-2025-43323 [HIGH] CVE-2025-43323: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-43323
Component: CloudKit
Impact: An app may be able to fingerprint the user
Description: This issue was addressed with additional entitlement checks.
apple
CVE-2025-30468P4MEDIUMCVSS 6.5v262025-09-15
CVE-2025-30468 [MEDIUM] CVE-2025-30468: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-30468
Component: Siri
Impact: Private Browsing tabs may be accessed without authentication
Description: This issue was addressed through improved state management.
apple
CVE-2025-43272P4MEDIUMCVSS 6.5v262025-09-15
CVE-2025-43272 [MEDIUM] CVE-2025-43272: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-43272
Component: WebKit
Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43356P4MEDIUMCVSS 6.5v262025-09-15
CVE-2025-43356 [MEDIUM] CVE-2025-43356: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-43356
Component: WebKit
Impact: A website may be able to access sensor information without user consent
Description: The issue was addressed with improved handling of caches.
apple
CVE-2025-43338P4HIGHCVSS 7.1v262025-09-15
CVE-2025-43338 [HIGH] CVE-2025-43338: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-43338
Component: ImageIO
Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory
Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2025-31254P4MEDIUMCVSS 5.4v262025-09-15
CVE-2025-31254 [MEDIUM] CVE-2025-31254: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-31254
Component: Safari
Impact: Processing maliciously crafted web content may lead to unexpected URL redirection
Description: This issue was addressed with improved URL validation.
apple
CVE-2025-43190P4MEDIUMCVSS 5.5v262025-09-15
CVE-2025-43190 [MEDIUM] CVE-2025-43190: iOS 26 and iPadOS 26
Apple Security Update: About the security content of iOS 26 and iPadOS 26
Product: iOS 26 and iPadOS
Version: 26
CVE: CVE-2025-43190
Component: Spell Check
Impact: An app may be able to access sensitive user data
Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
apple
1 / 2Next →