CVE-2025-43347CRITICAL 9.8EPSS p52.8%

CVE-2025-43347CVE-2025-43347

Description

This issue was addressed by removing the vulnerable code. This issue is fixed in iOS 26 and iPadOS 26, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. An input validation issue was addressed.

Scoring

CVSS 3.19.8 (CRITICAL)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS0.83% probability of exploitation · percentile 52.8% · 2026-06-19T12:03:05Z
Published2025-09-15
Last modified2026-04-02

Underlying weaknesses· 1

CWE-20

References

  1. https://support.apple.com/en-us/125108
  2. https://support.apple.com/en-us/125110
  3. https://support.apple.com/en-us/125114
  4. https://support.apple.com/en-us/125115
  5. https://support.apple.com/en-us/125116
  6. http://seclists.org/fulldisclosure/2025/Sep/49
  7. http://seclists.org/fulldisclosure/2025/Sep/53
  8. http://seclists.org/fulldisclosure/2025/Sep/56

1

TypeTargetConfidenceTier
WeaknessImproper Input Validationcwe-200%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
CVE-2025-31234
CVE
CVE-2025-30452
CVE
CVE-2025-43329
CVE
CVE-2025-31255
CVE
CVE-2025-43323
CVE
CVE-2025-43222
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.