CVE-2025-46311High· 7.5▾ TwilightAn inconsistent user interface issue was addressed with improved state management. This issue is fixed in iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2. An app may be able to access sensitive user data.
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 41.3 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.2%
An inconsistent user interface issue was addressed with improved state management. This issue is fixed in iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2. An app may be able to access sensitive user data.
ipados < 18.7.3ipados >= 26.0, < 26.2iphone_os < 18.7.3iphone_os >= 26.0, < 26.2Upgrade past the affected range:
ipados 26.2iphone_os 26.2Connected by shared product, vendor, weakness, or advisory.
CVE-2026-86950High· 8.8An out-of-bounds write issue was addressed with improved bounds checking
CVE-2025-43418Medium· 4.6This issue was addressed by restricting options offered on a locked device
CVE-2025-43507Medium· 6.5A privacy issue was addressed by moving sensitive data
CVE-2025-43454High· 7.5This issue was addressed through improved state management
CVE-2025-43460Medium· 4.6A logic issue was addressed with improved checks
CVE-2025-43445Medium· 4.3An out-of-bounds read was addressed with improved input validation