---
id: CVE-2025-43542
title: This issue was addressed with improved state management
summary: >-
  This issue was addressed with improved state management. This issue is fixed
  in iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Sequoia
  15.7.3, macOS Tahoe 26.2, visionOS 26.2. Password fields may be
  unintentionally reveale…
severity: high
cvss: 7.5
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'
cwe:
  - CWE-200
vendor: apple
product: macos
affected:
  - macos < 15.7.3
patched:
  - macos 15.7.3
published: '2025-12-12'
updated: '2026-10-07'
sourceUpdated: '2026-10-07T20:10:01.970'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-43542'
references:
  - url: 'https://support.apple.com/en-us/125884'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/125885'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/125886'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/125887'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/125891'
    label: product-security@apple.com
tags:
  - nvd
epss: 0.00857
epssPercentile: 0.57051
ingestedAt: '2026-10-07T20:46:46.920Z'
---

## Overview

This issue was addressed with improved state management. This issue is fixed in iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Sequoia 15.7.3, macOS Tahoe 26.2, visionOS 26.2. Password fields may be unintentionally revealed when remotely controlling a device over FaceTime.

## Affected

- `macos < 15.7.3`

## Remediation

Upgrade past the affected range:

- `macos 15.7.3`
