CVE-2025-43399 is a high-severity vulnerability (CVSS 7.5) affecting Apple macOS, iOS, and iPadOS that could allow an unauthorized application to access protected user data due to insufficient redaction of sensitive information. This flaw has a low attack complexity and does not require user interaction, posing a significant risk of data compromise. While no public exploits, Metasploit modules, or Nuclei templates are currently available, and there is minimal community discussion or media coverage, Apple has addressed this issue in iOS 18.7.2, iPadOS 18.7.2, macOS Sequoia 15.7.2, and macOS Tahoe 26.1.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 15.7.2CPE matchmatch criteria | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.