Apple iOS vulnerabilities
4,134 known vulnerabilities affecting apple/iphone_os.
Total CVEs
4,134
CISA KEV
92
actively exploited
Public exploits
276
Exploited in wild
141
Severity breakdown
CRITICAL340HIGH1687MEDIUM1818LOW289
Vulnerabilities
Page 107 of 207
CVE-2025-24194P4MEDIUMCVSS 6.5fixed in 18.42025-03-31
CVE-2025-24194 [MEDIUM] CVE-2025-24194: A logic issue was addressed with improved checks. This issue is fixed in iOS 18.4 and iPadOS 18.4, m
A logic issue was addressed with improved checks. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, tvOS 18.4, visionOS 2.4, watchOS 11.4. Processing maliciously crafted web content may result in the disclosure of process memory.
nvd
CVE-2026-28857P4MEDIUMCVSS 6.5fixed in 26.42026-03-25
CVE-2026-28857 [MEDIUM] CWE-125 CVE-2026-28857: The issue was addressed with improved memory handling. This issue is fixed in Safari 26.4, iOS 26.4
The issue was addressed with improved memory handling. This issue is fixed in Safari 26.4, iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4, visionOS 26.4. Processing maliciously crafted web content may lead to an unexpected process crash.
nvd
CVE-2026-43720P4MEDIUMCVSS 6.5fixed in 26.5.22026-06-29
CVE-2026-43720 [MEDIUM] CWE-416 CVE-2026-43720: A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari
A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content may lead to an unexpected Safari crash.
nvd
CVE-2026-43713P4MEDIUMCVSS 6.5fixed in 26.5.22026-06-29
CVE-2026-43713 [MEDIUM] CWE-284 CVE-2026-43713: A permissions issue was addressed with additional restrictions. This issue is fixed in Safari 26.5.2
A permissions issue was addressed with additional restrictions. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2, tvOS 26.6, visionOS 26.6, watchOS 26.6. Visiting a website may leak sensitive data.
nvd
CVE-2016-1788P4MEDIUMCVSS 5.9≤ 9.2.12016-03-24
CVE-2016-1788 [MEDIUM] CWE-310 CVE-2016-1788: Messages in Apple iOS before 9.3, OS X before 10.11.4, and watchOS before 2.2 does not properly impl
Messages in Apple iOS before 9.3, OS X before 10.11.4, and watchOS before 2.2 does not properly implement a cryptographic protection mechanism, which allows remote attackers to read message attachments via vectors related to duplicate messages.
nvd
CVE-2026-28942P4MEDIUMCVSS 6.5fixed in 26.52026-05-11
CVE-2026-28942 [MEDIUM] CWE-416 CVE-2026-28942: A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari
A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5, iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, watchOS 26.5. Processing maliciously crafted web content may lead to an unexpected Safari crash.
nvd
CVE-2025-43511P4MEDIUMCVSS 6.5fixed in 18.7.22025-12-12
CVE-2025-43511 [MEDIUM] CWE-416 CVE-2025-43511: A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari
A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.2, iOS 18.7.2 and iPadOS 18.7.2, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, visionOS 26.2, watchOS 26.2. Processing maliciously crafted web content may lead to an unexpected process crash.
nvd
CVE-2025-30468P4MEDIUMCVSS 6.5fixed in 26.02025-09-15
CVE-2025-30468 [MEDIUM] CWE-1390 CVE-2025-30468: This issue was addressed through improved state management. This issue is fixed in iOS 26 and iPadOS
This issue was addressed through improved state management. This issue is fixed in iOS 26 and iPadOS 26. Private Browsing tabs may be accessed without authentication.
nvd
CVE-2026-64730P4MEDIUMCVSS 6.5fixed in 26.62026-07-27
CVE-2026-64730 [MEDIUM] CWE-451 CVE-2026-64730: The issue was addressed with improved UI. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26
The issue was addressed with improved UI. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Visiting a website that frames malicious content may lead to UI spoofing.
nvd
CVE-2026-28920P4MEDIUMCVSS 6.5fixed in 18.7.9≥ 26.0, < 26.52026-05-11
CVE-2026-28920 [MEDIUM] CWE-200 CVE-2026-28920: An information leakage was addressed with additional validation. This issue is fixed in iOS 18.7.9 a
An information leakage was addressed with additional validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Sequoia 15.7.7, macOS Sonoma 14.8.7, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, watchOS 26.5. Visiting a maliciously crafted website may leak sensitive data.
nvd
CVE-2026-43821P4MEDIUMCVSS 6.5fixed in 26.62026-07-27
CVE-2026-43821 [MEDIUM] CWE-284 CVE-2026-43821: An access issue was addressed with improved access restrictions. This issue is fixed in Safari 26.6,
An access issue was addressed with improved access restrictions. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to read files outside of its sandbox.
nvd
CVE-2020-9909P4MEDIUMCVSS 5.9fixed in 13.62020-10-16
CVE-2020-9909 [MEDIUM] CWE-125 CVE-2020-9909: An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.6 a
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8. An attacker that has already achieved kernel code execution may be able to bypass kernel memory mitigations.
nvd
CVE-2026-64728P4MEDIUMCVSS 6.5fixed in 26.62026-07-27
CVE-2026-64728 [MEDIUM] CWE-693 CVE-2026-64728: A permissions issue was addressed with improved validation. This issue is fixed in Safari 26.6, iOS
A permissions issue was addressed with improved validation. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Maliciously crafted web content may violate iframe sandboxing policy.
nvd
CVE-2026-64742P4MEDIUMCVSS 6.5fixed in 26.62026-07-27
CVE-2026-64742 [MEDIUM] CWE-319 CVE-2026-64742: This issue was addressed by using HTTPS when sending information over the network. This issue is fix
This issue was addressed by using HTTPS when sending information over the network. This issue is fixed in iOS 26.6 and iPadOS 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to access sensitive user data.
nvd
CVE-2023-42961P4MEDIUMCVSS 6.3fixed in 16.72025-04-11
CVE-2023-42961 [MEDIUM] CWE-22 CVE-2023-42961: A path handling issue was addressed with improved validation. This issue is fixed in iOS 17 and iPad
A path handling issue was addressed with improved validation. This issue is fixed in iOS 17 and iPadOS 17, iOS 16.7 and iPadOS 16.7, macOS Sonoma 14, macOS Ventura 13.6, macOS Monterey 12.7. A sandboxed process may be able to circumvent sandbox restrictions.
nvd
CVE-2010-2805P4MEDIUMCVSS 6.8fixed in 4.22010-08-19
CVE-2010-2805 [MEDIUM] CWE-20 CVE-2010-2805: The FT_Stream_EnterFrame function in base/ftstream.c in FreeType before 2.4.2 does not properly vali
The FT_Stream_EnterFrame function in base/ftstream.c in FreeType before 2.4.2 does not properly validate certain position values, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font file.
nvd
CVE-2022-32844P4MEDIUMCVSS 6.3fixed in 15.62023-02-27
CVE-2022-32844 [MEDIUM] CWE-362 CVE-2022-32844: A race condition was addressed with improved state handling. This issue is fixed in tvOS 15.6, watch
A race condition was addressed with improved state handling. This issue is fixed in tvOS 15.6, watchOS 8.7, iOS 15.6 and iPadOS 15.6. An app with arbitrary kernel read and write capability may be able to bypass Pointer Authentication.
nvd
CVE-2010-1815P4MEDIUMCVSS 6.8fixed in 4.12010-09-09
CVE-2010-1815 [MEDIUM] CWE-399 CVE-2010-1815: Use-after-free vulnerability in WebKit in Apple iOS before 4.1 on the iPhone and iPod touch, and web
Use-after-free vulnerability in WebKit in Apple iOS before 4.1 on the iPhone and iPod touch, and webkitgtk before 1.2.6, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving scrollbars.
nvd
CVE-2010-1812P4MEDIUMCVSS 6.8fixed in 4.12010-09-09
CVE-2010-1812 [MEDIUM] CWE-399 CVE-2010-1812: Use-after-free vulnerability in WebKit in Apple iOS before 4.1 on the iPhone and iPod touch, and web
Use-after-free vulnerability in WebKit in Apple iOS before 4.1 on the iPhone and iPod touch, and webkitgtk before 1.2.6, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving selections.
nvd
CVE-2010-1781P4MEDIUMCVSS 6.8fixed in 4.12010-09-09
CVE-2010-1781 [MEDIUM] CWE-399 CVE-2010-1781: Double free vulnerability in WebKit in Apple iOS before 4.1 on the iPhone and iPod touch allows remo
Double free vulnerability in WebKit in Apple iOS before 4.1 on the iPhone and iPod touch allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to the rendering of an inline element.
nvd