CVE-2025-31215 |
Description: The issue was addressed with improved checks. This issue is fixed in watchOS 11.5, tvOS 18.5, iPadOS 17.7.7, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, visionOS 2.5, Safari 18.5. Processing maliciously crafted web content may lead to an unexpected process crash.
CVSS: MEDIUM (6.5) EPSS Score: 0.15%
May 12th, 2025 (about 1 month ago)
|
CVE-2025-31212 |
Description: This issue was addressed through improved state management. This issue is fixed in watchOS 11.5, tvOS 18.5, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, visionOS 2.5. An app may be able to access sensitive user data.
CVSS: MEDIUM (5.5) EPSS Score: 0.01%
May 12th, 2025 (about 1 month ago)
|
CVE-2025-31210 |
Description: The issue was addressed with improved UI. This issue is fixed in iPadOS 17.7.7, iOS 18.5 and iPadOS 18.5. Processing web content may lead to a denial-of-service.
CVSS: MEDIUM (6.5) EPSS Score: 0.03%
May 12th, 2025 (about 1 month ago)
|
CVE-2025-31206 |
Description: A type confusion issue was addressed with improved state handling. This issue is fixed in watchOS 11.5, tvOS 18.5, iPadOS 17.7.7, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, visionOS 2.5, Safari 18.5. Processing maliciously crafted web content may lead to an unexpected Safari crash.
CVSS: MEDIUM (4.3) EPSS Score: 0.06%
May 12th, 2025 (about 1 month ago)
|
CVE-2025-31205 |
Description: The issue was addressed with improved checks. This issue is fixed in watchOS 11.5, tvOS 18.5, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, visionOS 2.5, Safari 18.5. A malicious website may exfiltrate data cross-origin.
CVSS: MEDIUM (6.5) EPSS Score: 0.02%
May 12th, 2025 (about 1 month ago)
|
CVE-2025-31196 |
Description: An out-of-bounds read was addressed with improved input validation. This issue is fixed in iPadOS 17.7.7, macOS Ventura 13.7.6, macOS Sonoma 14.7.6. Processing a maliciously crafted file may lead to a denial-of-service or potentially disclose memory contents.
CVSS: MEDIUM (5.5) EPSS Score: 0.01%
May 12th, 2025 (about 1 month ago)
|
CVE-2025-30440 |
Description: The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.6, macOS Sequoia 15.5, macOS Sonoma 14.7.6. An app may be able to bypass ASLR.
CVSS: MEDIUM (5.5) EPSS Score: 0.01%
May 12th, 2025 (about 1 month ago)
|
CVE-2025-24225 |
Description: An injection issue was addressed with improved input validation. This issue is fixed in iPadOS 17.7.7, iOS 18.5 and iPadOS 18.5. Processing an email may lead to user interface spoofing.
CVSS: MEDIUM (6.5) EPSS Score: 0.03%
May 12th, 2025 (about 1 month ago)
|
CVE-2025-24220 |
Description: A permissions issue was addressed with additional restrictions. This issue is fixed in iPadOS 17.7.7, iOS 18.4 and iPadOS 18.4. An app may be able to read a persistent device identifier.
CVSS: MEDIUM (5.5) EPSS Score: 0.01%
May 12th, 2025 (about 1 month ago)
|
CVE-2025-24155 |
Description: The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.3, macOS Ventura 13.7.6, macOS Sonoma 14.7.6. An app may be able to disclose kernel memory.
CVSS: MEDIUM (5.5) EPSS Score: 0.01%
May 12th, 2025 (about 1 month ago)
|