Apple iOS vulnerabilities
4,134 known vulnerabilities affecting apple/iphone_os.
Total CVEs
4,134
CISA KEV
92
actively exploited
Public exploits
276
Exploited in wild
141
Severity breakdown
CRITICAL340HIGH1687MEDIUM1818LOW289
Vulnerabilities
Page 132 of 207
CVE-2025-31241P4MEDIUMCVSS 5.3fixed in 18.52025-05-12
CVE-2025-31241 [MEDIUM] CWE-415 CVE-2025-31241: A double free issue was addressed with improved memory management. This issue is fixed in iOS 18.5 a
A double free issue was addressed with improved memory management. This issue is fixed in iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequoia 15.5, macOS Sonoma 14.7.6, macOS Ventura 13.7.6, tvOS 18.5, visionOS 2.5, watchOS 11.5. A remote attacker may cause an unexpected app termination.
nvd
CVE-2023-42845P4MEDIUMCVSS 5.3≥ 17.0, < 17.12023-10-25
CVE-2023-42845 [MEDIUM] CWE-306 CVE-2023-42845: An authentication issue was addressed with improved state management. This issue is fixed in macOS S
An authentication issue was addressed with improved state management. This issue is fixed in macOS Sonoma 14.1, iOS 17.1 and iPadOS 17.1. Photos in the Hidden Photos Album may be viewed without authentication.
nvd
CVE-2015-5769P4HIGHCVSS 7.1≤ 8.42015-08-17
CVE-2015-5769 [HIGH] CVE-2015-5769: The MSVDX driver in Apple iOS before 8.4.1 allows remote attackers to cause a denial of service (dev
The MSVDX driver in Apple iOS before 8.4.1 allows remote attackers to cause a denial of service (device crash) via a crafted video.
nvd
CVE-2025-31254P4MEDIUMCVSS 5.4fixed in 26.02025-09-15
CVE-2025-31254 [MEDIUM] CWE-863 CVE-2025-31254: This issue was addressed with improved URL validation. This issue is fixed in Safari 26, iOS 26 and
This issue was addressed with improved URL validation. This issue is fixed in Safari 26, iOS 26 and iPadOS 26. Processing maliciously crafted web content may lead to unexpected URL redirection.
nvd
CVE-2022-32938P4MEDIUMCVSS 5.3fixed in 16.12022-11-01
CVE-2022-32938 [MEDIUM] CWE-22 CVE-2022-32938: A parsing issue in the handling of directory paths was addressed with improved path validation. This
A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in iOS 16.1 and iPadOS 16, macOS Ventura 13. A shortcut may be able to check the existence of an arbitrary path on the file system.
nvd
CVE-2026-20643P4MEDIUMCVSS 5.4fixed in 26.3.12026-03-17
CVE-2026-20643 [MEDIUM] CWE-20 CVE-2026-20643: A cross-origin issue in the Navigation API was addressed with improved input validation. This issue
A cross-origin issue in the Navigation API was addressed with improved input validation. This issue is fixed in Background Security Improvements for iOS, iPadOS, and macOS, Safari 26.4, iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4, visionOS 26.4. Processing maliciously crafted web content may bypass Same Origin Policy.
nvd
CVE-2024-54488P4MEDIUMCVSS 5.3fixed in 18.22025-01-27
CVE-2024-54488 [MEDIUM] CWE-863 CVE-2024-54488: A logic issue was addressed with improved file handling. This issue is fixed in iOS 18.2 and iPadOS
A logic issue was addressed with improved file handling. This issue is fixed in iOS 18.2 and iPadOS 18.2, iPadOS 17.7.3, macOS Sequoia 15.2, macOS Sonoma 14.7.2, macOS Ventura 13.7.2. Photos in the Hidden Photos Album may be viewed without authentication.
nvd
CVE-2012-0608P4MEDIUMCVSS 6.8fixed in 5.12012-03-08
CVE-2012-0608 [MEDIUM] CWE-119 CVE-2012-0608: WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute a
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-03-07-1 and APPLE-SA-2012-03-07-2.
nvd
CVE-2010-1757P4MEDIUMCVSS 6.4fixed in 4.02010-06-22
CVE-2010-1757 [MEDIUM] CWE-264 CVE-2010-1757: WebKit in Apple iOS before 4 on the iPhone and iPod touch does not enforce the expected boundary res
WebKit in Apple iOS before 4 on the iPhone and iPod touch does not enforce the expected boundary restrictions on content display by an IFRAME element, which allows remote attackers to spoof the user interface via a crafted HTML document.
nvd
CVE-2015-6994P4HIGHCVSS 7.1≤ 9.0.22015-10-23
CVE-2015-6994 [HIGH] CWE-399 CVE-2015-6994: The kernel in Apple iOS before 9.1 and OS X before 10.11.1 mishandles reuse of virtual memory, which
The kernel in Apple iOS before 9.1 and OS X before 10.11.1 mishandles reuse of virtual memory, which allows attackers to cause a denial of service via a crafted app.
nvd
CVE-2015-1102P4HIGHCVSS 7.1≤ 8.22015-04-10
CVE-2015-1102 [HIGH] CWE-20 CVE-2015-1102: The kernel in Apple iOS before 8.3, Apple OS X before 10.10.3, and Apple TV before 7.2 does not prop
The kernel in Apple iOS before 8.3, Apple OS X before 10.10.3, and Apple TV before 7.2 does not properly handle TCP headers, which allows man-in-the-middle attackers to cause a denial of service via unspecified vectors.
nvd
CVE-2012-2871P4MEDIUMCVSS 6.8≤ 6.1.4v1.0.0+46 more2012-08-31
CVE-2012-2871 [MEDIUM] CVE-2012-2871: libxml2 2.9.0-rc1 and earlier, as used in Google Chrome before 21.0.1180.89, does not properly suppo
libxml2 2.9.0-rc1 and earlier, as used in Google Chrome before 21.0.1180.89, does not properly support a cast of an unspecified variable during handling of XSL transforms, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted document, related to the _xmlNs data structure in include/libxml/tree.h.
nvd
CVE-2012-1521P4MEDIUMCVSS 6.8fixed in 6.02012-05-01
CVE-2012-1521 [MEDIUM] CWE-416 CVE-2012-1521: Use-after-free vulnerability in the XML parser in Google Chrome before 18.0.1025.168 allows remote a
Use-after-free vulnerability in the XML parser in Google Chrome before 18.0.1025.168 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
nvd
CVE-2011-3078P4MEDIUMCVSS 6.8fixed in 6.02012-05-01
CVE-2011-3078 [MEDIUM] CWE-416 CVE-2011-3078: Use-after-free vulnerability in Google Chrome before 18.0.1025.168 allows remote attackers to cause
Use-after-free vulnerability in Google Chrome before 18.0.1025.168 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the floating of elements, a different vulnerability than CVE-2011-3081.
nvd
CVE-2013-0951P4MEDIUMCVSS 6.8≤ 6.0.2v6.0+1 more2013-01-29
CVE-2013-0951 [MEDIUM] CWE-119 CVE-2013-0951: WebKit, as used in Apple iOS before 6.1, allows remote attackers to execute arbitrary code or cause
WebKit, as used in Apple iOS before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-01-28-1.
nvd
CVE-2013-0952P4MEDIUMCVSS 6.8≤ 6.0.2v6.0+1 more2013-01-29
CVE-2013-0952 [MEDIUM] CWE-119 CVE-2013-0952: WebKit, as used in Apple iOS before 6.1, allows remote attackers to execute arbitrary code or cause
WebKit, as used in Apple iOS before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-01-28-1.
nvd
CVE-2013-0953P4MEDIUMCVSS 6.8≤ 6.0.2v6.0+1 more2013-01-29
CVE-2013-0953 [MEDIUM] CWE-119 CVE-2013-0953: WebKit, as used in Apple iOS before 6.1, allows remote attackers to execute arbitrary code or cause
WebKit, as used in Apple iOS before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-01-28-1.
nvd
CVE-2013-0958P4MEDIUMCVSS 6.8≤ 6.0.2v6.0+1 more2013-01-29
CVE-2013-0958 [MEDIUM] CWE-119 CVE-2013-0958: WebKit, as used in Apple iOS before 6.1, allows remote attackers to execute arbitrary code or cause
WebKit, as used in Apple iOS before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-01-28-1.
nvd
CVE-2013-0956P4MEDIUMCVSS 6.8≤ 6.0.2v1.0.0+42 more2013-01-29
CVE-2013-0956 [MEDIUM] CWE-119 CVE-2013-0956: WebKit, as used in Apple iOS before 6.1, allows remote attackers to execute arbitrary code or cause
WebKit, as used in Apple iOS before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-01-28-1.
nvd
CVE-2013-0954P4MEDIUMCVSS 6.8≤ 6.0.2v6.0+1 more2013-01-29
CVE-2013-0954 [MEDIUM] CWE-119 CVE-2013-0954: WebKit, as used in Apple iOS before 6.1, allows remote attackers to execute arbitrary code or cause
WebKit, as used in Apple iOS before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-01-28-1.
nvd