Privacy Issue in Apple's iOS, iPadOS, and Safari Products
CVE-2025-43502

7.5HIGH

Key Information:

Vendor

Apple

Vendor
CVE Published:
4 November 2025

What is CVE-2025-43502?

A privacy issue was identified in various Apple products that could potentially allow applications to bypass certain user-defined privacy preferences. This vulnerability was addressed by removing sensitive data to protect user information. The issue affects iOS, iPadOS, Safari, and visionOS, with fixes available in the latest versions (26.1). Users are encouraged to update their devices to ensure optimal protection.

Affected Version(s)

iOS and iPadOS < 26.1

Safari < 26.1

visionOS < 26.1

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.