CVE Feed

    Dashboard / CVE

    5.5
    Medium

    CVE-2025-43305

    Last Modified: 28 Apr 2026

    A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. A malicious app may be able to access private information.

    Published: 15 Sept 2025
    3.3
    Low

    CVE-2025-43344

    Last Modified: 28 Apr 2026

    An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 26 and iPadOS 26, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. An app may be able to cause unexpected system termination.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43190

    Last Modified: 28 Apr 2026

    A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in iOS 26 and iPadOS 26, macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26, visionOS 26, watchOS 26. An app may be able to access sensitive user data.

    Published: 15 Sept 2025
    4.3
    Medium

    CVE-2025-43368

    Last Modified: 12 May 2026

    A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26, iOS 26 and iPadOS 26, macOS Tahoe 26. Processing maliciously crafted web content may lead to an unexpected Safari crash.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43295

    Last Modified: 28 Apr 2026

    A denial-of-service issue was addressed with improved validation. This issue is fixed in iOS 18.7 and iPadOS 18.7, macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to cause a denial-of-service.

    Published: 15 Sept 2025
    8.8
    High

    CVE-2025-43329

    Last Modified: 28 Apr 2026

    A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26 and iPadOS 26, macOS Tahoe 26, tvOS 26, watchOS 26. An app may be able to break out of its sandbox.

    Published: 15 Sept 2025
    3.3
    Low

    CVE-2025-43283

    Last Modified: 28 Apr 2026

    An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Tahoe 26. An app may be able to cause unexpected system termination.

    Published: 15 Sept 2025
    7.8
    High

    CVE-2025-43333

    Last Modified: 2 Apr 2026

    A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26. An app may be able to gain root privileges.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43299

    Last Modified: 2 Apr 2026

    A denial-of-service issue was addressed with improved validation. This issue is fixed in iOS 18.7 and iPadOS 18.7, macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to cause a denial-of-service.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43325

    Last Modified: 28 Apr 2026

    An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Tahoe 26. An app may be able to access sensitive user data.

    Published: 15 Sept 2025
    7.8
    High

    CVE-2025-43372

    Last Modified: 28 Apr 2026

    The issue was addressed with improved input validation. This issue is fixed in iOS 26 and iPadOS 26, macOS Sonoma 14.8.2, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43292

    Last Modified: 2 Apr 2026

    A race condition was addressed with improved state handling. This issue is fixed in macOS Sequoia 15.7, macOS Sequoia 15.7.2, macOS Tahoe 26. An app may be able to access sensitive user data.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43314

    Last Modified: 28 Apr 2026

    A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to access sensitive user data.

    Published: 15 Sept 2025
    9.8
    Critical

    CVE-2025-43343

    Last Modified: 2 Apr 2026

    The issue was addressed with improved memory handling. This issue is fixed in Safari 26, iOS 26 and iPadOS 26, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. Processing maliciously crafted web content may lead to an unexpected process crash.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43355

    Last Modified: 28 Apr 2026

    A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 18.7 and iPadOS 18.7, iOS 26 and iPadOS 26, macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. An app may be able to cause a denial-of-service.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43302

    Last Modified: 28 Apr 2026

    An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7 and iPadOS 18.7, iOS 26 and iPadOS 26, macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. An app may be able to cause unexpected system termination.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43375

    Last Modified: 28 Apr 2026

    The issue was addressed with improved checks. This issue is fixed in Xcode 26. Processing an overly large path value may crash a process.

    Published: 15 Sept 2025
    7.5
    High

    CVE-2025-31271

    Last Modified: 2 Apr 2026

    This issue was addressed through improved state management. This issue is fixed in macOS Tahoe 26. Incoming FaceTime calls can appear or be accepted on a locked macOS device, even with notifications disabled on the lock screen.

    Published: 15 Sept 2025
    6.2
    Medium

    CVE-2025-43318

    Last Modified: 28 Apr 2026

    This issue was addressed with additional entitlement checks. This issue is fixed in macOS Tahoe 26. An app with root privileges may be able to access private information.

    Published: 15 Sept 2025
    9.8
    Critical

    CVE-2025-43359

    Last Modified: 28 Apr 2026

    A logic issue was addressed with improved state management. This issue is fixed in iOS 18.7 and iPadOS 18.7, iOS 26 and iPadOS 26, macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. A UDP server socket bound to a local interface may become bound to all interfaces.

    Published: 15 Sept 2025
    8.8
    High

    CVE-2025-43358

    Last Modified: 28 Apr 2026

    A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in iOS 18.7 and iPadOS 18.7, iOS 26 and iPadOS 26, macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. A shortcut may be able to bypass sandbox restrictions.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43319

    Last Modified: 28 Apr 2026

    This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to access protected user data.

    Published: 15 Sept 2025
    9.8
    Critical

    CVE-2025-43362

    Last Modified: 28 Apr 2026

    The issue was addressed with improved checks. This issue is fixed in iOS 18.7 and iPadOS 18.7, iOS 26 and iPadOS 26. An app may be able to monitor keystrokes without user permission.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-31270

    Last Modified: 28 Apr 2026

    A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26. An app may be able to access protected user data.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43231

    Last Modified: 28 Apr 2026

    A logic issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.8. An app may be able to access user-sensitive data.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43303

    Last Modified: 28 Apr 2026

    A logging issue was addressed with improved data redaction. This issue is fixed in iOS 26 and iPadOS 26, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. An app may be able to access sensitive user data.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43354

    Last Modified: 28 Apr 2026

    A logging issue was addressed with improved data redaction. This issue is fixed in iOS 26 and iPadOS 26, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. An app may be able to access sensitive user data.

    Published: 15 Sept 2025
    9.8
    Critical

    CVE-2025-43342

    Last Modified: 2 Apr 2026

    A correctness issue was addressed with improved checks. This issue is fixed in Safari 26, iOS 18.7 and iPadOS 18.7, iOS 26 and iPadOS 26, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. Processing maliciously crafted web content may lead to an unexpected process crash.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43207

    Last Modified: 28 Apr 2026

    This issue was addressed with improved entitlements. This issue is fixed in macOS Tahoe 26. An app may be able to access user-sensitive data.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43315

    Last Modified: 28 Apr 2026

    This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to access user-sensitive data.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43293

    Last Modified: 28 Apr 2026

    The issue was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to access sensitive user data.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43285

    Last Modified: 28 Apr 2026

    A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to access protected user data.

    Published: 15 Sept 2025
    3.3
    Low

    CVE-2025-43357

    Last Modified: 26 May 2026

    This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 18.7 and iPadOS 18.7, iOS 26 and iPadOS 26, macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to fingerprint the user.

    Published: 15 Sept 2025
    7.8
    High

    CVE-2025-43204

    Last Modified: 28 Apr 2026

    This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Tahoe 26. An app may be able to break out of its sandbox.

    Published: 15 Sept 2025
    7.8
    High

    CVE-2025-43341

    Last Modified: 28 Apr 2026

    A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to gain root privileges.

    Published: 15 Sept 2025
    7.8
    High

    CVE-2025-43316

    Last Modified: 28 Apr 2026

    A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26, visionOS 26. A malicious app may be able to gain root privileges.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-31269

    Last Modified: 2 Apr 2026

    A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to access protected user data.

    Published: 15 Sept 2025
    7.8
    High

    CVE-2025-43286

    Last Modified: 28 Apr 2026

    A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to break out of its sandbox.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43208

    Last Modified: 28 Apr 2026

    A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26. An app may be able to read sensitive location information.

    Published: 15 Sept 2025
    7.5
    High

    CVE-2025-24088

    Last Modified: 28 Apr 2026

    The issue was addressed by adding additional logic. This issue is fixed in macOS Tahoe 26. An app may be able to override MDM-enforced settings from profiles.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43321

    Last Modified: 28 Apr 2026

    The issue was resolved by blocking unsigned services from launching on Intel Macs. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to access protected user data.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43337

    Last Modified: 28 Apr 2026

    An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.7.2, macOS Tahoe 26. An app may be able to access sensitive user data.

    Published: 15 Sept 2025
    6.5
    Medium

    CVE-2025-43272

    Last Modified: 2 Apr 2026

    The issue was addressed with improved memory handling. This issue is fixed in Safari 26, iOS 26 and iPadOS 26, macOS Tahoe 26, visionOS 26, watchOS 26. Processing maliciously crafted web content may lead to an unexpected Safari crash.

    Published: 15 Sept 2025
    7.1
    High

    CVE-2025-43287

    Last Modified: 28 Apr 2026

    The issue was addressed with improved memory handling. This issue is fixed in macOS Tahoe 26. Processing a maliciously crafted image may corrupt process memory.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-31268

    Last Modified: 28 Apr 2026

    A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to access protected user data.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43291

    Last Modified: 28 Apr 2026

    A permissions issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to modify protected parts of the file system.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-24197

    Last Modified: 28 Apr 2026

    A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to access sensitive user data.

    Published: 15 Sept 2025
    5.5
    Medium

    CVE-2025-43317

    Last Modified: 28 Apr 2026

    A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26 and iPadOS 26, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. An app may be able to access sensitive user data.

    Published: 15 Sept 2025
    7.8
    High

    CVE-2025-43340

    Last Modified: 28 Apr 2026

    A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26. An app may be able to break out of its sandbox.

    Published: 15 Sept 2025
    6.5
    Medium

    CVE-2025-43356

    Last Modified: 2 Apr 2026

    The issue was addressed with improved handling of caches. This issue is fixed in Safari 26, iOS 18.7 and iPadOS 18.7, iOS 26 and iPadOS 26, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. A website may be able to access sensor information without user consent.

    Published: 15 Sept 2025