Apple iOS vulnerabilities
4,134 known vulnerabilities affecting apple/iphone_os.
Total CVEs
4,134
CISA KEV
92
actively exploited
Public exploits
276
Exploited in wild
141
Severity breakdown
CRITICAL340HIGH1687MEDIUM1818LOW289
Vulnerabilities
Page 190 of 207
CVE-2022-32795P4MEDIUMCVSS 4.3fixed in 15.72022-09-20
CVE-2022-32795 [MEDIUM] CVE-2022-32795: This issue was addressed with improved checks. This issue is fixed in iOS 16, iOS 15.7 and iPadOS 15
This issue was addressed with improved checks. This issue is fixed in iOS 16, iOS 15.7 and iPadOS 15.7. Visiting a malicious website may lead to address bar spoofing.
nvd
CVE-2016-4686P4MEDIUMCVSS 4.4≤ 10.0.32017-02-20
CVE-2016-4686 [MEDIUM] CWE-264 CVE-2016-4686: An issue was discovered in certain Apple products. iOS before 10.1 is affected. The issue involves t
An issue was discovered in certain Apple products. iOS before 10.1 is affected. The issue involves the "Contacts" component, which does not prevent an app's Address Book access after access revocation.
nvd
CVE-2021-30999P4MEDIUMCVSS 4.3fixed in 14.62021-08-24
CVE-2021-30999 [MEDIUM] CWE-276 CVE-2021-30999: The issue was addressed with improved permissions logic. This issue is fixed in iOS 14.6 and iPadOS
The issue was addressed with improved permissions logic. This issue is fixed in iOS 14.6 and iPadOS 14.6. A user may be unable to fully delete browsing history.
nvd
CVE-2026-20609P4MEDIUMCVSS 4.4fixed in 18.7.5≥ 26.0, < 26.32026-02-11
CVE-2026-20609 [MEDIUM] CWE-125 CVE-2026-20609: The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.5 and iPadOS
The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPadOS 26.3, macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macOS Tahoe 26.3, tvOS 26.3, visionOS 26.3, watchOS 26.3. Processing a maliciously crafted file may lead to a denial-of-service or potentially disclose memory contents.
nvd
CVE-2024-54503P4MEDIUMCVSS 4.2fixed in 18.22024-12-12
CVE-2024-54503 [MEDIUM] CVE-2024-54503: An inconsistent user interface issue was addressed with improved state management. This issue is fix
An inconsistent user interface issue was addressed with improved state management. This issue is fixed in iOS 18.2 and iPadOS 18.2. Muting a call while ringing may not result in mute being enabled.
nvd
CVE-2016-4707P4MEDIUMCVSS 4.0≤ 9.3.52016-09-25
CVE-2016-4707 [MEDIUM] CWE-19 CVE-2016-4707: CFNetwork in Apple iOS before 10 and OS X before 10.12 mishandles Local Storage deletion, which allo
CFNetwork in Apple iOS before 10 and OS X before 10.12 mishandles Local Storage deletion, which allows local users to discover the visited web sites of arbitrary users via unspecified vectors.
nvd
CVE-2025-43226P4MEDIUMCVSS 4.0fixed in 18.62025-07-30
CVE-2025-43226 [MEDIUM] CWE-125 CVE-2025-43226: An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 18.6
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 18.6 and iPadOS 18.6, iPadOS 17.7.9, macOS Sequoia 15.6, macOS Sonoma 14.7.7, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing a maliciously crafted image may result in disclosure of process memory.
nvd
CVE-2025-43205P4MEDIUMCVSS 4.0fixed in 18.42025-11-12
CVE-2025-43205 [MEDIUM] CWE-125 CVE-2025-43205: An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iO
An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. An app may be able to bypass ASLR.
nvd
CVE-2018-4304P4MEDIUMCVSS 5.0fixed in 12.02019-04-03
CVE-2018-4304 [MEDIUM] CWE-20 CVE-2018-4304: A denial of service issue was addressed with improved validation. This issue affected versions prior
A denial of service issue was addressed with improved validation. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5.
nvd
CVE-2007-3754P4MEDIUMCVSS 4.3v1.0.1v1.0.22007-09-27
CVE-2007-3754 [MEDIUM] CWE-287 CVE-2007-3754: Mail in Apple iPhone 1.1.1, when using SSL, does not warn the user when the mail server changes or i
Mail in Apple iPhone 1.1.1, when using SSL, does not warn the user when the mail server changes or is not trusted, which might allow remote attackers to steal credentials and read email via a man-in-the-middle (MITM) attack.
nvd
CVE-2011-3058P4MEDIUMCVSS 4.3fixed in 6.0.12012-03-30
CVE-2011-3058 [MEDIUM] CWE-79 CVE-2011-3058: Google Chrome before 18.0.1025.142 does not properly handle the EUC-JP encoding system, which might
Google Chrome before 18.0.1025.142 does not properly handle the EUC-JP encoding system, which might allow remote attackers to conduct cross-site scripting (XSS) attacks via unspecified vectors.
nvd
CVE-2015-5835P4MEDIUMCVSS 4.3≤ 8.4.12015-09-18
CVE-2015-5835 [MEDIUM] CWE-200 CVE-2015-5835: Apple iOS before 9 allows attackers to obtain sensitive information about inter-app communication vi
Apple iOS before 9 allows attackers to obtain sensitive information about inter-app communication via a crafted app that conducts an interception attack involving an unspecified URL scheme.
nvd
CVE-2013-5149P4MEDIUMCVSS 4.3≤ 6.1.4v1.0.0+46 more2013-09-19
CVE-2013-5149 [MEDIUM] CWE-264 CVE-2013-5149: The Push Notifications subsystem in Apple iOS before 7 provides the push-notification token to an ap
The Push Notifications subsystem in Apple iOS before 7 provides the push-notification token to an app without user approval, which allows attackers to obtain sensitive information via an app that employs a crafted push-notification registration process.
nvd
CVE-2015-5921P4MEDIUMCVSS 4.3≤ 8.4.12015-09-18
CVE-2015-5921 [MEDIUM] CWE-200 CVE-2015-5921: WebKit in Apple iOS before 9 mishandles "Content-Disposition: attachment" HTTP headers, which might
WebKit in Apple iOS before 9 mishandles "Content-Disposition: attachment" HTTP headers, which might allow man-in-the-middle attackers to obtain sensitive information via unspecified vectors.
nvd
CVE-2011-3254P4MEDIUMCVSS 4.3v4.2v4.2.1+9 more2011-10-14
CVE-2011-3254 [MEDIUM] CWE-79 CVE-2011-3254: Cross-site scripting (XSS) vulnerability in Calendar in Apple iOS before 5 allows remote attackers t
Cross-site scripting (XSS) vulnerability in Calendar in Apple iOS before 5 allows remote attackers to inject arbitrary web script or HTML via an invitation note.
nvd
CVE-2013-3951P4MEDIUMCVSS 4.6≤ 8.2v6.1.32013-06-05
CVE-2013-3951 [MEDIUM] CWE-20 CVE-2013-3951: sys/openbsd/stack_protector.c in libc in Apple iOS 6.1.3 and Mac OS X 10.8.x does not properly parse
sys/openbsd/stack_protector.c in libc in Apple iOS 6.1.3 and Mac OS X 10.8.x does not properly parse the Apple strings employed in the user-space stack-cookie implementation, which allows local users to bypass cookie randomization by executing a program with a call-path beginning with the stack-guard= substring, as demonstrated by an iOS untethering at
nvd
CVE-2024-44136P4MEDIUMCVSS 4.6fixed in 17.52025-01-15
CVE-2024-44136 [MEDIUM] CWE-863 CVE-2024-44136: This issue was addressed through improved state management. This issue is fixed in iOS 17.5 and iPad
This issue was addressed through improved state management. This issue is fixed in iOS 17.5 and iPadOS 17.5. An attacker with physical access to a device may be able to disable Stolen Device Protection.
nvd
CVE-2012-3733P4MEDIUMCVSS 4.3≤ 5.1.1v1.0.0+38 more2012-09-20
CVE-2012-3733 [MEDIUM] CWE-200 CVE-2012-3733: Messages in Apple iOS before 6, when multiple iMessage e-mail addresses are configured, does not ens
Messages in Apple iOS before 6, when multiple iMessage e-mail addresses are configured, does not ensure that a reply's sender address matches the recipient address of the original message, which allows remote attackers to obtain potentially sensitive information about alternate e-mail addresses in opportunistic circumstances by reading a reply.
nvd
CVE-2018-4239P4MEDIUMCVSS 4.6fixed in 11.42018-06-08
CVE-2018-4239 [MEDIUM] CWE-200 CVE-2018-4239: An issue was discovered in certain Apple products. iOS before 11.4 is affected. The issue involves t
An issue was discovered in certain Apple products. iOS before 11.4 is affected. The issue involves the "Magnifier" component. It allows physically proximate attackers to bypass the lock-screen protection mechanism and see the most recent Magnifier image.
nvd
CVE-2017-2352P4MEDIUMCVSS 4.6≤ 10.2.02017-02-20
CVE-2017-2352 [MEDIUM] CVE-2017-2352: An issue was discovered in certain Apple products. iOS before 10.2.1 is affected. watchOS before 3.1
An issue was discovered in certain Apple products. iOS before 10.2.1 is affected. watchOS before 3.1.3 is affected. The issue involves the "Unlock with iPhone" component, which allows attackers to bypass the wrist-presence protection mechanism and unlock a Watch device via unspecified vectors.
nvd