Apple iOS vulnerabilities
4,134 known vulnerabilities affecting apple/iphone_os.
Total CVEs
4,134
CISA KEV
92
actively exploited
Public exploits
276
Exploited in wild
141
Severity breakdown
CRITICAL340HIGH1687MEDIUM1818LOW289
Vulnerabilities
Page 138 of 207
CVE-2015-3802P4HIGHCVSS 7.2≤ 8.42015-08-17
CVE-2015-3802 [HIGH] CWE-20 CVE-2015-3802: Apple iOS before 8.4.1 and OS X before 10.10.5 allow local users to bypass a code-signing protection
Apple iOS before 8.4.1 and OS X before 10.10.5 allow local users to bypass a code-signing protection mechanism via a crafted Mach-O file, a different vulnerability than CVE-2015-3805.
nvd
CVE-2015-3805P4HIGHCVSS 7.2≤ 8.42015-08-17
CVE-2015-3805 [HIGH] CVE-2015-3805: Apple iOS before 8.4.1 and OS X before 10.10.5 allow local users to bypass a code-signing protection
Apple iOS before 8.4.1 and OS X before 10.10.5 allow local users to bypass a code-signing protection mechanism via a crafted Mach-O file, a different vulnerability than CVE-2015-3802.
nvd
CVE-2014-4451P4HIGHCVSS 7.2≤ 8.1v8.0+2 more2014-11-18
CVE-2014-4451 [HIGH] CWE-264 CVE-2014-4451: Apple iOS before 8.1.1 does not properly enforce the failed-passcode limit, which makes it easier fo
Apple iOS before 8.1.1 does not properly enforce the failed-passcode limit, which makes it easier for physically proximate attackers to bypass the lock-screen protection mechanism via a series of guesses.
nvd
CVE-2016-4605P4MEDIUMCVSS 6.5≤ 9.3.22016-07-22
CVE-2016-4605 [MEDIUM] CWE-476 CVE-2016-4605: Calendar in Apple iOS before 9.3.3 allows remote attackers to cause a denial of service (NULL pointe
Calendar in Apple iOS before 9.3.3 allows remote attackers to cause a denial of service (NULL pointer dereference and device restart) via a crafted invitation.
nvd
CVE-2023-38610P4HIGHCVSS 7.1fixed in 17.02024-01-10
CVE-2023-38610 [HIGH] CWE-787 CVE-2023-38610: A memory corruption issue was addressed by removing the vulnerable code. This issue is fixed in macO
A memory corruption issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sonoma 14, iOS 17 and iPadOS 17. An app may be able to cause unexpected system termination or write kernel memory.
nvd
CVE-2025-31253P4HIGHCVSS 7.1fixed in 18.52025-05-12
CVE-2025-31253 [HIGH] CWE-672 CVE-2025-31253: This issue was addressed through improved state management. This issue is fixed in iOS 18.5 and iPad
This issue was addressed through improved state management. This issue is fixed in iOS 18.5 and iPadOS 18.5. Muting the microphone during a FaceTime call may not result in audio being silenced.
nvd
CVE-2014-1295P4MEDIUMCVSS 6.8≤ 7.1v7.0+6 more2014-04-23
CVE-2014-1295 [MEDIUM] CWE-287 CVE-2014-1295: Secure Transport in Apple iOS before 7.1.1, Apple OS X 10.8.x and 10.9.x through 10.9.2, and Apple T
Secure Transport in Apple iOS before 7.1.1, Apple OS X 10.8.x and 10.9.x through 10.9.2, and Apple TV before 6.1.1 does not ensure that a server's X.509 certificate is the same during renegotiation as it was before renegotiation, which allows man-in-the-middle attackers to obtain sensitive information or modify TLS session data via a "triple handshake
nvd
CVE-2016-1837P4MEDIUMCVSS 5.5fixed in 9.3.22016-05-20
CVE-2016-1837 [MEDIUM] CWE-416 CVE-2016-1837: Multiple use-after-free vulnerabilities in the (1) htmlPArsePubidLiteral and (2) htmlParseSystemiter
Multiple use-after-free vulnerabilities in the (1) htmlPArsePubidLiteral and (2) htmlParseSystemiteral functions in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allow remote attackers to cause a denial of service via a crafted XML document.
nvd
CVE-2014-4449P4MEDIUMCVSS 6.8≤ 8.0.22014-10-22
CVE-2014-4449 [MEDIUM] CWE-310 CVE-2014-4449: iCloud Data Access in Apple iOS before 8.1 does not verify X.509 certificates from TLS servers, whic
iCloud Data Access in Apple iOS before 8.1 does not verify X.509 certificates from TLS servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
nvd
CVE-2016-1836P4MEDIUMCVSS 5.5fixed in 9.3.22016-05-20
CVE-2016-1836 [MEDIUM] CWE-416 CVE-2016-1836: Use-after-free vulnerability in the xmlDictComputeFastKey function in libxml2 before 2.9.4, as used
Use-after-free vulnerability in the xmlDictComputeFastKey function in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to cause a denial of service via a crafted XML document.
nvd
CVE-2020-27935P4MEDIUMCVSS 6.3fixed in 14.22021-04-02
CVE-2020-27935 [MEDIUM] CVE-2020-27935: Multiple issues were addressed with improved logic. This issue is fixed in iOS 14.2 and iPadOS 14.2,
Multiple issues were addressed with improved logic. This issue is fixed in iOS 14.2 and iPadOS 14.2, macOS Big Sur 11.0.1, watchOS 7.1, tvOS 14.2. A sandboxed process may be able to circumvent sandbox restrictions.
nvd
CVE-2012-3732P4MEDIUMCVSS 6.4≤ 5.1.1v1.0.0+38 more2012-09-20
CVE-2012-3732 [MEDIUM] CWE-310 CVE-2012-3732: Mail in Apple iOS before 6 uses an S/MIME message's From address as the displayed sender address, wh
Mail in Apple iOS before 6 uses an S/MIME message's From address as the displayed sender address, which allows remote attackers to spoof signed content via an e-mail message in which the From field does not match the signer's identity.
nvd
CVE-2017-7060P4MEDIUMCVSS 6.5fixed in 10.3.32017-07-20
CVE-2017-7060 [MEDIUM] CWE-20 CVE-2017-7060: An issue was discovered in certain Apple products. iOS before 10.3.3 is affected. Safari before 10.1
An issue was discovered in certain Apple products. iOS before 10.3.3 is affected. Safari before 10.1.2 is affected. The issue involves the "Safari Printing" component. It allows remote attackers to cause a denial of service (excessive print dialogs) via a crafted web site.
nvd
CVE-2009-2199P4MEDIUMCVSS 5.8≤ 3.0.1v1.0.0+19 more2009-08-12
CVE-2009-2199 [MEDIUM] CVE-2009-2199: Incomplete blacklist vulnerability in WebKit in Apple Safari before 4.0.3, as used on iPhone OS befo
Incomplete blacklist vulnerability in WebKit in Apple Safari before 4.0.3, as used on iPhone OS before 3.1, iPhone OS before 3.1.1 for iPod touch, and other platforms, allows remote attackers to spoof domain names in URLs, and possibly conduct phishing attacks, via unspecified homoglyphs.
nvd
CVE-2018-4309P4MEDIUMCVSS 6.1fixed in 12.02019-04-03
CVE-2018-4309 [MEDIUM] CWE-79 CVE-2018-4309: A cross-site scripting issue existed in Safari. This issue was addressed with improved URL validatio
A cross-site scripting issue existed in Safari. This issue was addressed with improved URL validation. This issue affected versions prior to iOS 12, tvOS 12, Safari 12, iTunes 12.9 for Windows, iCloud for Windows 7.7.
nvd
CVE-2018-4345P4MEDIUMCVSS 6.1fixed in 12.02019-04-03
CVE-2018-4345 [MEDIUM] CWE-79 CVE-2018-4345: A cross-site scripting issue existed in Safari. This issue was addressed with improved URL validatio
A cross-site scripting issue existed in Safari. This issue was addressed with improved URL validation. This issue affected versions prior to iOS 12, tvOS 12, Safari 12, iTunes 12.9 for Windows, iCloud for Windows 7.7.
nvd
CVE-2025-24251P4MEDIUMCVSS 6.5fixed in 18.42025-04-29
CVE-2025-24251 [MEDIUM] CWE-476 CVE-2025-24251: The issue was addressed with improved checks. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadO
The issue was addressed with improved checks. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. An attacker on the local network may cause an unexpected app termination.
nvd
CVE-2025-43424P4MEDIUMCVSS 6.5fixed in 26.12025-11-04
CVE-2025-43424 [MEDIUM] CWE-119 CVE-2025-43424: The issue was addressed with improved bounds checks. This issue is fixed in iOS 26.1 and iPadOS 26.1
The issue was addressed with improved bounds checks. This issue is fixed in iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1. A malicious HID device may cause an unexpected process crash.
nvd
CVE-2016-4722P4MEDIUMCVSS 5.9≤ 9.3.52016-09-25
CVE-2016-4722 [MEDIUM] CWE-20 CVE-2016-4722: The IDS - Connectivity component in Apple iOS before 10 and OS X before 10.12 allows man-in-the-midd
The IDS - Connectivity component in Apple iOS before 10 and OS X before 10.12 allows man-in-the-middle attackers to conduct Call Relay spoofing attacks and cause a denial of service via unspecified vectors.
nvd
CVE-2022-26766P4MEDIUMCVSS 5.5fixed in 15.52022-05-26
CVE-2022-26766 [MEDIUM] CWE-295 CVE-2022-26766: A certificate parsing issue was addressed with improved checks. This issue is fixed in tvOS 15.5, iO
A certificate parsing issue was addressed with improved checks. This issue is fixed in tvOS 15.5, iOS 15.5 and iPadOS 15.5, Security Update 2022-004 Catalina, watchOS 8.6, macOS Big Sur 11.6.6, macOS Monterey 12.4. A malicious app may be able to bypass signature validation.
nvd