A privacy issue was addressed by removing the vulnerable code. This issue is fixed in macOS Tahoe 26.1, iOS 26.1 and iPadOS 26.1, iOS 18.7.2 and iPadOS 18.7.2, macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, visionOS 26.1. An app may be able to access sensitive user data.
References
Configurations
Configuration 1 (hide)
|
History
17 Dec 2025, 21:15
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | (en) A privacy issue was addressed by removing the vulnerable code. This issue is fixed in macOS Tahoe 26.1, iOS 26.1 and iPadOS 26.1, iOS 18.7.2 and iPadOS 18.7.2, macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, visionOS 26.1. An app may be able to access sensitive user data. | |
| References |
|
05 Nov 2025, 19:15
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | (en) A privacy issue was addressed by removing the vulnerable code. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2. An app may be able to access sensitive user data. | |
| References |
|
|
05 Nov 2025, 15:15
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
04 Nov 2025, 16:56
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://support.apple.com/en-us/125632 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/125635 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/125636 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/125638 - Release Notes, Vendor Advisory | |
| CPE | cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* |
|
| First Time |
Apple iphone Os
Apple visionos Apple ipados Apple Apple macos |
04 Nov 2025, 16:15
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
| CWE | CWE-359 |
04 Nov 2025, 02:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-11-04 02:15
Updated : 2025-12-17 21:15
NVD link : CVE-2025-43389
Mitre link : CVE-2025-43389
CVE.ORG link : CVE-2025-43389
JSON object : View
Products Affected
apple
- iphone_os
- ipados
- visionos
- macos
CWE
CWE-359
Exposure of Private Personal Information to an Unauthorized Actor
