Apple watchOS vulnerabilities
2,036 known vulnerabilities affecting apple/watchos.
Total CVEs
2,036
CISA KEV
51
actively exploited
Public exploits
137
Exploited in wild
85
Severity breakdown
CRITICAL160HIGH1024MEDIUM782LOW68UNKNOWN2
Vulnerabilities
Page 102 of 102
CVE-2023-32394P4LOWCVSS 2.4fixed in 9.5≥ unspecified, < 9.52023-06-23
CVE-2023-32394 [LOW] CWE-668 CVE-2023-32394: The issue was addressed with improved checks. This issue is fixed in iOS 16.5 and iPadOS 16.5, watch
The issue was addressed with improved checks. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5, tvOS 16.5, macOS Ventura 13.4. A person with physical access to a device may be able to view contact information from the lock screen.
nvdapple
CVE-2021-30915P4LOWCVSS 2.4fixed in 8.12021-08-24
CVE-2021-30915 [LOW] CVE-2021-30915: A logic issue was addressed with improved state management. This issue is fixed in iOS 15.1 and iPad
A logic issue was addressed with improved state management. This issue is fixed in iOS 15.1 and iPadOS 15.1, macOS Monterey 12.0.1, tvOS 15.1, watchOS 8.1, Security Update 2021-007 Catalina, macOS Big Sur 11.6.1. A person with physical access to an iOS device may be able to determine characteristics of a user's password in a secure text entry field.
nvdapple
CVE-2022-22599P4LOWCVSS 2.4fixed in 8.5≥ unspecified, < 8.52022-03-18
CVE-2022-22599 [LOW] CVE-2022-22599: Description: A permissions issue was addressed with improved validation. This issue is fixed in watc
Description: A permissions issue was addressed with improved validation. This issue is fixed in watchOS 8.5, iOS 15.4 and iPadOS 15.4, macOS Big Sur 11.6.5, macOS Monterey 12.3. A person with physical access to a device may be able to use Siri to obtain some location information from the lock screen.
nvdapple
CVE-2022-46717P4LOWCVSS 2.4v9.22022-12-13
CVE-2022-46717 [LOW] CVE-2022-46717: watchOS 9.2
Apple Security Update: About the security content of watchOS 9.2
Product: watchOS
Version: 9.2
CVE: CVE-2022-46717
Component: Accessibility
Impact: A user with physical access to a locked Apple Watch may be able to view user photos via accessibility features
Description: A logic issue was addressed with improved restrictions.
apple
CVE-2015-5863P4LOWCVSS 2.1v1.02015-09-18
CVE-2015-5863 [LOW] CWE-200 CVE-2015-5863: IOStorageFamily in Apple iOS before 9 does not properly initialize an unspecified data structure, wh
IOStorageFamily in Apple iOS before 9 does not properly initialize an unspecified data structure, which allows local users to obtain sensitive information from kernel memory via unknown vectors.
nvd
CVE-2015-5898P4LOWCVSS 2.1v1.02015-09-18
CVE-2015-5898 [LOW] CWE-200 CVE-2015-5898: CFNetwork in Apple iOS before 9 relies on the hardware UID for its cache encryption key, which makes
CFNetwork in Apple iOS before 9 relies on the hardware UID for its cache encryption key, which makes it easier for physically proximate attackers to obtain sensitive information by obtaining this UID.
nvd
CVE-2022-32870P4LOWCVSS 2.4fixed in 9.0≥ unspecified, < 92022-11-01
CVE-2022-32870 [LOW] CWE-200 CVE-2022-32870: A logic issue was addressed with improved state management. This issue is fixed in iOS 16, macOS Ven
A logic issue was addressed with improved state management. This issue is fixed in iOS 16, macOS Ventura 13, watchOS 9. A user with physical access to a device may be able to use Siri to obtain some call history information.
nvd
CVE-2019-8682P4LOWCVSS 2.4fixed in 5.3≥ unspecified, < watchOS 5.32019-12-18
CVE-2019-8682 [LOW] CWE-306 CVE-2019-8682: The issue was addressed with improved UI handling. This issue is fixed in iOS 12.4, watchOS 5.3. A u
The issue was addressed with improved UI handling. This issue is fixed in iOS 12.4, watchOS 5.3. A user may inadvertently complete an in-app purchase while on the lock screen.
nvdapple
CVE-2023-32417P4LOWCVSS 2.4fixed in 9.5≥ unspecified, < 9.52023-06-23
CVE-2023-32417 [LOW] CVE-2023-32417: This issue was addressed by restricting options offered on a locked device. This issue is fixed in w
This issue was addressed by restricting options offered on a locked device. This issue is fixed in watchOS 9.5. An attacker with physical access to a locked Apple Watch may be able to view user photos or contacts via accessibility features.
nvdapple
CVE-2024-27814P4LOWCVSS 2.4fixed in 10.52024-06-10
CVE-2024-27814 [LOW] CWE-200 CVE-2024-27814: This issue was addressed through improved state management. This issue is fixed in watchOS 10.5. A p
This issue was addressed through improved state management. This issue is fixed in watchOS 10.5. A person with physical access to a device may be able to view contact information from the lock screen.
nvdapple
CVE-2015-5842P4LOWCVSS 2.1v1.02015-09-18
CVE-2015-5842 [LOW] CWE-200 CVE-2015-5842: XNU in the kernel in Apple iOS before 9 does not properly initialize an unspecified data structure,
XNU in the kernel in Apple iOS before 9 does not properly initialize an unspecified data structure, which allows local users to obtain sensitive memory-layout information via unknown vectors.
nvd
CVE-2019-8775P4LOWCVSS 2.4fixed in 6.12019-12-18
CVE-2019-8775 [LOW] CVE-2019-8775: The issue was addressed by restricting options offered on a locked device. This issue is fixed in iO
The issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 13.1 and iPadOS 13.1. A person with physical access to an iOS device may be able to access contacts from the lock screen.
nvdapple
CVE-2020-3891P4LOWCVSS 2.4fixed in 6.2≥ unspecified, < watchOS 6.22020-04-01
CVE-2020-3891 [LOW] CVE-2020-3891: A logic issue was addressed with improved state management. This issue is fixed in iOS 13.4 and iPad
A logic issue was addressed with improved state management. This issue is fixed in iOS 13.4 and iPadOS 13.4, watchOS 6.2. A person with physical access to a locked iOS device may be able to respond to messages even when replies are disabled.
nvd
CVE-2019-8548P4LOWCVSS 2.4fixed in 5.2≥ unspecified, < watchOS 5.22019-12-18
CVE-2019-8548 [LOW] CWE-459 CVE-2019-8548: An issue existed where partially entered passcodes may not clear when the device went to sleep. This
An issue existed where partially entered passcodes may not clear when the device went to sleep. This issue was addressed by clearing the passcode when a locked device sleeps. This issue is fixed in watchOS 5.2. A partially entered passcode may not clear when the device goes to sleep.
nvdapple
CVE-2016-7647UNKNOWNv3.1.32017-01-23
CVE-2016-7647 CVE-2016-7647: watchOS 3.1.3
Apple Security Update: About the security content of watchOS 3.1.3
Product: watchOS
Version: 3.1.3
CVE: CVE-2016-7647
Component: Kernel
Impact: An application may be able to cause a denial of service
Description: A denial of service issue was addressed through improved memory handling.
apple
CVE-2016-7705UNKNOWNv2.2.22016-07-18
CVE-2016-7705 CVE-2016-7705: watchOS 2.2.2
Apple Security Update: About the security content of watchOS 2.2.2
Product: watchOS
Version: 2.2.2
CVE: CVE-2016-7705
Component: ImageIO
Impact: Processing a maliciously crafted image may lead to arbitrary code execution
Description: A memory corruption issue was addressed through improved memory handling.
apple
← Previous102 / 102