Input Validation Flaw in Apple iPadOS and iOS Products
CVE-2025-24225

6.5MEDIUM

Key Information:

Vendor

Apple

Vendor
CVE Published:
12 May 2025

What is CVE-2025-24225?

An input validation flaw affects certain versions of Apple iPadOS and iOS, potentially leading to user interface spoofing when processing an email. Users may be misled into believing that the email is legitimate, which could compromise their personal information. Apple has released updates (iPadOS 17.7.7, iOS 18.5 and iPadOS 18.5) to address this issue by enhancing input validation protocols, ensuring a more secure user experience.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

iOS and iPadOS < 18.5

iPadOS < 17.7

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.