The issue was addressed with improved input validation. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. Processing maliciously crafted web content may lead to an unexpected Safari crash.
References
| Link | Resource |
|---|---|
| https://support.apple.com/en-us/122404 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/122405 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/122716 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/122719 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/122720 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/122721 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/122722 | Release Notes Vendor Advisory |
| http://seclists.org/fulldisclosure/2025/May/10 | |
| http://seclists.org/fulldisclosure/2025/May/12 | |
| http://seclists.org/fulldisclosure/2025/May/13 | |
| http://seclists.org/fulldisclosure/2025/May/5 | |
| http://seclists.org/fulldisclosure/2025/May/6 | |
| http://seclists.org/fulldisclosure/2025/May/7 |
Configurations
Configuration 1 (hide)
|
History
02 Apr 2026, 19:19
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | (en) The issue was addressed with improved input validation. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. Processing maliciously crafted web content may lead to an unexpected Safari crash. |
03 Nov 2025, 20:18
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
27 May 2025, 21:29
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Apple iphone Os
Apple tvos Apple watchos Apple ipados Apple visionos Apple macos Apple safari Apple |
|
| CPE | cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:* cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:* |
|
| References | () https://support.apple.com/en-us/122404 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/122405 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/122716 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/122719 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/122720 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/122721 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/122722 - Release Notes, Vendor Advisory |
14 May 2025, 15:15
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
13 May 2025, 21:16
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
| CWE | CWE-20 |
13 May 2025, 19:35
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
12 May 2025, 22:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-05-12 22:15
Updated : 2026-04-02 19:19
NVD link : CVE-2025-31217
Mitre link : CVE-2025-31217
CVE.ORG link : CVE-2025-31217
JSON object : View
Products Affected
apple
- watchos
- safari
- iphone_os
- visionos
- tvos
- ipados
- macos
CWE
CWE-20
Improper Input Validation
