Apple iOS vulnerabilities
4,134 known vulnerabilities affecting apple/iphone_os.
Total CVEs
4,134
CISA KEV
92
actively exploited
Public exploits
276
Exploited in wild
141
Severity breakdown
CRITICAL340HIGH1687MEDIUM1818LOW289
Vulnerabilities
Page 148 of 207
CVE-2011-2797P4MEDIUMCVSS 6.8fixed in 5.02011-08-03
CVE-2011-2797 [MEDIUM] CWE-416 CVE-2011-2797: Use-after-free vulnerability in Google Chrome before 13.0.782.107 allows remote attackers to cause a
Use-after-free vulnerability in Google Chrome before 13.0.782.107 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to resource caching.
nvd
CVE-2011-2351P4MEDIUMCVSS 6.8fixed in 5.02011-06-29
CVE-2011-2351 [MEDIUM] CWE-416 CVE-2011-2351: Use-after-free vulnerability in Google Chrome before 12.0.742.112 allows remote attackers to cause a
Use-after-free vulnerability in Google Chrome before 12.0.742.112 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG use elements.
nvd
CVE-2011-2847P4MEDIUMCVSS 6.8fixed in 5.12011-09-19
CVE-2011-2847 [MEDIUM] CWE-416 CVE-2011-2847: Use-after-free vulnerability in the document loader in Google Chrome before 14.0.835.163 allows remo
Use-after-free vulnerability in the document loader in Google Chrome before 14.0.835.163 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted document.
nvd
CVE-2009-2816P4MEDIUMCVSS 6.8fixed in 4.02009-11-13
CVE-2009-2816 [MEDIUM] CWE-352 CVE-2009-2816: The implementation of Cross-Origin Resource Sharing (CORS) in WebKit, as used in Apple Safari before
The implementation of Cross-Origin Resource Sharing (CORS) in WebKit, as used in Apple Safari before 4.0.4 and Google Chrome before 3.0.195.33, includes certain custom HTTP headers in the OPTIONS request during cross-origin operations with preflight, which makes it easier for remote attackers to conduct cross-site request forgery (CSRF) attacks via a
nvd
CVE-2011-2846P4MEDIUMCVSS 6.8fixed in 5.12011-09-19
CVE-2011-2846 [MEDIUM] CWE-416 CVE-2011-2846: Use-after-free vulnerability in Google Chrome before 14.0.835.163 allows remote attackers to cause a
Use-after-free vulnerability in Google Chrome before 14.0.835.163 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to unload event handling.
nvd
CVE-2011-2818P4MEDIUMCVSS 6.8fixed in 5.02011-08-03
CVE-2011-2818 [MEDIUM] CWE-416 CVE-2011-2818: Use-after-free vulnerability in Google Chrome before 13.0.782.107 allows remote attackers to cause a
Use-after-free vulnerability in Google Chrome before 13.0.782.107 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to display box rendering.
nvd
CVE-2012-2857P4MEDIUMCVSS 6.8≤ 6.0.2v6.0+1 more2012-08-06
CVE-2012-2857 [MEDIUM] CWE-399 CVE-2012-2857: Use-after-free vulnerability in the Cascading Style Sheets (CSS) DOM implementation in Google Chrome
Use-after-free vulnerability in the Cascading Style Sheets (CSS) DOM implementation in Google Chrome before 21.0.1180.57 on Mac OS X and Linux, and before 21.0.1180.60 on Windows and Chrome Frame, allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted document.
nvd
CVE-2025-43429P4MEDIUMCVSS 4.3fixed in 26.12025-11-04
CVE-2025-43429 [MEDIUM] CWE-119 CVE-2025-43429: A buffer overflow was addressed with improved bounds checking. This issue is fixed in Safari 26.1, i
A buffer overflow was addressed with improved bounds checking. This issue is fixed in Safari 26.1, iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, tvOS 26.1, visionOS 26.1, watchOS 26.1. Processing maliciously crafted web content may lead to an unexpected process crash.
nvd
CVE-2022-26765P4MEDIUMCVSS 4.7fixed in 15.52022-05-26
CVE-2022-26765 [MEDIUM] CWE-362 CVE-2022-26765: A race condition was addressed with improved state handling. This issue is fixed in watchOS 8.6, tvO
A race condition was addressed with improved state handling. This issue is fixed in watchOS 8.6, tvOS 15.5, macOS Monterey 12.4, iOS 15.5 and iPadOS 15.5. A malicious attacker with arbitrary read and write capability may be able to bypass Pointer Authentication.
nvd
CVE-2016-1784P4MEDIUMCVSS 6.5fixed in 9.32016-03-24
CVE-2016-1784 [MEDIUM] CWE-400 CVE-2016-1784: The History implementation in WebKit in Apple iOS before 9.3, Safari before 9.1, and tvOS before 9.2
The History implementation in WebKit in Apple iOS before 9.3, Safari before 9.1, and tvOS before 9.2 allows remote attackers to cause a denial of service (resource consumption and application crash) via a crafted web site.
nvd
CVE-2016-7601P4MEDIUMCVSS 6.8≤ 10.1.12017-02-20
CVE-2016-7601 [MEDIUM] CWE-254 CVE-2016-7601: An issue was discovered in certain Apple products. iOS before 10.2 is affected. The issue involves t
An issue was discovered in certain Apple products. iOS before 10.2 is affected. The issue involves the "Local Authentication" component, which does not honor the configured screen-lock time interval if the Touch ID prompt is visible.
nvd
CVE-2021-30863P4MEDIUMCVSS 6.8fixed in 15.02021-08-24
CVE-2021-30863 [MEDIUM] CVE-2021-30863: This issue was addressed by improving Face ID anti-spoofing models. This issue is fixed in iOS 15 an
This issue was addressed by improving Face ID anti-spoofing models. This issue is fixed in iOS 15 and iPadOS 15. A 3D model constructed to look like the enrolled user may be able to authenticate via Face ID.
nvd
CVE-2017-2495P4MEDIUMCVSS 6.5≤ 10.3.12017-05-22
CVE-2017-2495 [MEDIUM] CWE-20 CVE-2017-2495: An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. Safari before 10.1
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. Safari before 10.1.1 is affected. The issue involves the "Safari" component. It allows remote attackers to cause a denial of service (application crash) via a crafted web site that improperly interacts with the history menu.
nvd
CVE-2015-7995P4MEDIUMCVSS 5.0≤ 9.22015-11-17
CVE-2015-7995 [MEDIUM] CVE-2015-7995: The xsltStylePreCompute function in preproc.c in libxslt 1.1.28 does not check if the parent node is
The xsltStylePreCompute function in preproc.c in libxslt 1.1.28 does not check if the parent node is an element, which allows attackers to cause a denial of service via a crafted XML file, related to a "type confusion" issue.
nvd
CVE-2016-7636P4MEDIUMCVSS 5.9≤ 10.1.12017-02-20
CVE-2016-7636 [MEDIUM] CWE-20 CVE-2016-7636: An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2
An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. watchOS before 3.1.3 is affected. The issue involves the "Security" component, which allows man-in-the-middle attackers to cause a denial of service (application crash) via vectors related to OCSP responder URLs.
nvd
CVE-2019-6228P4MEDIUMCVSS 6.1fixed in 12.1.32019-03-05
CVE-2019-6228 [MEDIUM] CWE-79 CVE-2019-6228: A cross-site scripting issue existed in Safari. This issue was addressed with improved URL validatio
A cross-site scripting issue existed in Safari. This issue was addressed with improved URL validation. This issue is fixed in iOS 12.1.3, Safari 12.0.3. Processing maliciously crafted web content may lead to a cross site scripting attack.
nvd
CVE-2023-27940P4MEDIUMCVSS 6.3fixed in 15.7.62023-06-23
CVE-2023-27940 [MEDIUM] CVE-2023-27940: The issue was addressed with additional permissions checks. This issue is fixed in iOS 15.7.6 and iP
The issue was addressed with additional permissions checks. This issue is fixed in iOS 15.7.6 and iPadOS 15.7.6, macOS Monterey 12.6.6, macOS Ventura 13.4. A sandboxed app may be able to observe system-wide network connections.
nvd
CVE-2016-7762P4MEDIUMCVSS 6.1≤ 10.1.12017-02-20
CVE-2016-7762 [MEDIUM] CWE-79 CVE-2016-7762: An issue was discovered in certain Apple products. iOS before 10.2 is affected. The issue involves t
An issue was discovered in certain Apple products. iOS before 10.2 is affected. The issue involves the "WebKit" component, which allows XSS attacks against Safari.
nvd
CVE-2024-23219P4MEDIUMCVSS 6.2fixed in 17.32024-01-23
CVE-2024-23219 [MEDIUM] CWE-287 CVE-2024-23219: The issue was addressed with improved authentication. This issue is fixed in iOS 17.3 and iPadOS 17.
The issue was addressed with improved authentication. This issue is fixed in iOS 17.3 and iPadOS 17.3. Stolen Device Protection may be unexpectedly disabled.
nvd
CVE-2026-28977P4MEDIUMCVSS 6.2fixed in 18.7.9≥ 26.0, < 26.52026-05-11
CVE-2026-28977 [MEDIUM] CWE-119 CVE-2026-28977: The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.7.9 and iPadOS 18
The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Sequoia 15.7.7, macOS Sonoma 14.8.7, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, watchOS 26.5. Processing a maliciously crafted file may lead to unexpected app termination.
nvd