The issue was addressed with improved checks. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. Processing maliciously crafted web content may lead to an unexpected process crash.
References
| Link | Resource |
|---|---|
| https://support.apple.com/en-us/122404 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/122405 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/122716 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/122719 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/122720 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/122721 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/122722 | Release Notes Vendor Advisory |
| http://seclists.org/fulldisclosure/2025/May/10 | |
| http://seclists.org/fulldisclosure/2025/May/12 | |
| http://seclists.org/fulldisclosure/2025/May/13 | |
| http://seclists.org/fulldisclosure/2025/May/5 | |
| http://seclists.org/fulldisclosure/2025/May/6 | |
| http://seclists.org/fulldisclosure/2025/May/7 | |
| https://lists.debian.org/debian-lts-announce/2025/06/msg00016.html |
Configurations
Configuration 1 (hide)
|
History
02 Apr 2026, 19:19
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | (en) The issue was addressed with improved checks. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. Processing maliciously crafted web content may lead to an unexpected process crash. |
03 Nov 2025, 20:18
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
28 May 2025, 14:31
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:* cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:* |
|
| First Time |
Apple iphone Os
Apple tvos Apple watchos Apple ipados Apple visionos Apple macos Apple safari Apple |
|
| References | () https://support.apple.com/en-us/122404 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/122405 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/122716 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/122719 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/122720 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/122721 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/122722 - Release Notes, Vendor Advisory |
15 May 2025, 14:15
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-20 | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
13 May 2025, 19:35
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
12 May 2025, 22:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-05-12 22:15
Updated : 2026-04-02 19:19
NVD link : CVE-2025-31215
Mitre link : CVE-2025-31215
CVE.ORG link : CVE-2025-31215
JSON object : View
Products Affected
apple
- watchos
- safari
- iphone_os
- visionos
- tvos
- ipados
- macos
CWE
CWE-20
Improper Input Validation
