
CVE-2025-43200 – Apple Multiple Products Unspecified Vulnerability
https://notcve.org/view.php?id=CVE-2025-43200
16 Jun 2025 — This issue was addressed with improved checks. This issue is fixed in watchOS 11.3.1, macOS Ventura 13.7.4, iOS 15.8.4 and iPadOS 15.8.4, iOS 16.7.11 and iPadOS 16.7.11, iPadOS 17.7.5, visionOS 2.3.1, macOS Sequoia 15.3.1, iOS 18.3.1 and iPadOS 18.3.1, macOS Sonoma 14.7.4. A logic issue existed when processing a maliciously crafted photo or video shared via an iCloud Link. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted indivi... • https://support.apple.com/en-us/122173 •

CVE-2025-30466
https://notcve.org/view.php?id=CVE-2025-30466
29 May 2025 — This issue was addressed through improved state management. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4, visionOS 2.4, macOS Sequoia 15.4. A website may be able to bypass Same Origin Policy. • https://support.apple.com/en-us/122371 • CWE-346: Origin Validation Error •

CVE-2025-31261
https://notcve.org/view.php?id=CVE-2025-31261
29 May 2025 — A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Ventura 13.7.5, macOS Sequoia 15.4, macOS Sonoma 14.7.5. An app may be able to access protected user data. • https://support.apple.com/en-us/122373 • CWE-276: Incorrect Default Permissions •

CVE-2025-31231
https://notcve.org/view.php?id=CVE-2025-31231
29 May 2025 — A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4. An app may be able to read sensitive location information. • https://support.apple.com/en-us/122373 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2025-31199
https://notcve.org/view.php?id=CVE-2025-31199
29 May 2025 — A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.4 and iPadOS 18.4, visionOS 2.4, macOS Sequoia 15.4. An app may be able to access sensitive user data. • https://support.apple.com/en-us/122371 • CWE-532: Insertion of Sensitive Information into Log File •

CVE-2025-31264
https://notcve.org/view.php?id=CVE-2025-31264
29 May 2025 — An authentication issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.7.5, macOS Sequoia 15.4, macOS Sonoma 14.7.5. An attacker with physical access to a locked device may be able to view sensitive user information. • https://support.apple.com/en-us/122373 • CWE-287: Improper Authentication •

CVE-2025-31198
https://notcve.org/view.php?id=CVE-2025-31198
29 May 2025 — This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Ventura 13.7.5, macOS Sequoia 15.4, macOS Sonoma 14.7.5. A path handling issue was addressed with improved validation. • https://support.apple.com/en-us/122373 • CWE-59: Improper Link Resolution Before File Access ('Link Following') •

CVE-2025-31189
https://notcve.org/view.php?id=CVE-2025-31189
29 May 2025 — A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS Ventura 13.7.5, macOS Sequoia 15.4, macOS Sonoma 14.7.5. An app may be able to break out of its sandbox. • https://support.apple.com/en-us/122373 • CWE-693: Protection Mechanism Failure •

CVE-2025-31263
https://notcve.org/view.php?id=CVE-2025-31263
29 May 2025 — The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.4. An app may be able to corrupt coprocessor memory. • https://support.apple.com/en-us/122373 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2025-24183
https://notcve.org/view.php?id=CVE-2025-24183
19 May 2025 — The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3. A local user may be able to modify protected parts of the file system. • https://support.apple.com/en-us/122068 • CWE-269: Improper Privilege Management •