CVE-2025-46277

A logging issue was addressed with improved data redaction. This issue is fixed in iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, watchOS 26.2. An app may be able to access a user’s Safari history.
References
Link Resource
https://support.apple.com/en-us/125884 Release Notes Vendor Advisory
https://support.apple.com/en-us/125886 Release Notes Vendor Advisory
https://support.apple.com/en-us/125890 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

02 Apr 2026, 19:21

Type Values Removed Values Added
Summary (en) A logging issue was addressed with improved data redaction. This issue is fixed in macOS Tahoe 26.2, iOS 26.2 and iPadOS 26.2, watchOS 26.2. An app may be able to access a user’s Safari history. (en) A logging issue was addressed with improved data redaction. This issue is fixed in iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, watchOS 26.2. An app may be able to access a user’s Safari history.

18 Dec 2025, 20:15

Type Values Removed Values Added
CWE CWE-532

18 Dec 2025, 19:48

Type Values Removed Values Added
CWE NVD-CWE-noinfo
First Time Apple watchos
Apple iphone Os
Apple ipados
Apple
Apple macos
References () https://support.apple.com/en-us/125884 - () https://support.apple.com/en-us/125884 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/125886 - () https://support.apple.com/en-us/125886 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/125890 - () https://support.apple.com/en-us/125890 - Release Notes, Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 3.3
CPE cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

17 Dec 2025, 21:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-17 21:16

Updated : 2026-04-02 19:21


NVD link : CVE-2025-46277

Mitre link : CVE-2025-46277

CVE.ORG link : CVE-2025-46277


JSON object : View

Products Affected

apple

  • iphone_os
  • ipados
  • macos
  • watchos
CWE
NVD-CWE-noinfo CWE-532

Insertion of Sensitive Information into Log File