CVE-2025-43345 is a correctness issue affecting Apple's iOS, iPadOS, macOS, tvOS, visionOS, and watchOS, where an application could potentially access sensitive user data due to insufficient checks. Rated CVSS 5.5 (MEDIUM), exploitation requires local access and user interaction (UI:R), but could lead to a high confidentiality impact (C:H). There is currently no evidence of active exploitation, public exploit code, or significant community discussion. Apple has addressed this vulnerability in iOS 18.7/26, iPadOS 18.7/26, macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26, tvOS 26, visionOS 26, and watchOS 26.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 18.7CPE matchmatch criteria | cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* | ||
< 18.7CPE matchmatch criteria | cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* | ||
>= 14.0, < 14.8CPE matchmatch criteria | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* | ||
>= 15.0, < 15.7CPE matchmatch criteria | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* | ||
< 26.0CPE matchmatch criteria | cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.