Known vulnerabilities in Apple iOS 18.4.1 22E252 - page 3

Vendor: Apple Inc.
Software: Apple iOS
Version: 18.4.1 22E252
Software CPE: cpe:2.3:o:apple:apple_ios:*:*:*:*:*:*:*:*
Total vulnerabilities: 252
Public exploits: 6
Known exploited (KEV): 7
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Apple iOS version 18.4.1 22E252 Apple iOS 18.4.1 22E252 is affected by 252 vulnerabilities: 5 critical, 26 high, 46 medium, 175 low Critical High Medium Low

Vulnerabilities (252)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU131097 - Protection Mechanism Failure
CVE-2026-28957
CWE-693 Low
No
No
18.7.9 22H355, 26.5 23F77 12.05.2026 SB2026051214
SB2026051215
SB2026051218
#VU131096 - Information Exposure Through Log Files
CVE-2026-28873
CWE-532 Low
No
No
18.7.9 22H355 12.05.2026 SB2026051214
#VU131095 - Resource exhaustion
CVE-2026-28872
CWE-400 Low
No
No
18.7.9 22H355 12.05.2026 SB2026051214
#VU131043 - Improper input validation
CVE-2026-28987
CWE-20 Low
No
No
18.7.9 22H355, 26.5 23F77 12.05.2026 SB2026051205
SB2026051209
SB2026051210
and 4 more
#VU131042 - Improper Access Control
CVE-2026-28986
CWE-284 Low
No
No
18.7.9 22H355, 26.5 23F77 12.05.2026 SB2026051205
SB2026051209
SB2026051210
and 4 more
#VU131041 - Out-of-bounds write
CVE-2026-28972
CWE-787 Low
No
No
18.7.9 22H355, 26.5 23F77 12.05.2026 SB2026051205
SB2026051209
SB2026051210
and 5 more
#VU131040 - State Issues
CVE-2026-28951
CWE-371 Low
No
No
18.7.9 22H355, 26.5 23F77 12.05.2026 SB2026051205
SB2026051209
SB2026051210
and 2 more
#VU126887 - Exposure of sensitive information to an unauthorized actor
CVE-2026-28950
CWE-200 Low
No
No
26.4.2 23E261, 15.8.8 19H422, 16.7.16 20H392, 18.7.8 22H352 23.04.2026 SB2026042332
SB2026042333
SB2026051211
and 2 more
#VU124411 - Memory corruption
CVE-2026-20657
CWE-119 Low
No
No
18.7.7 22H333 25.03.2026 SB2026032506
SB2026032507
SB2026032509
#VU124405 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2026-28871
CWE-79 Medium
No
No
18.7.7 22H333, 26.4 23E246 25.03.2026 SB2026032503
SB2026032504
SB2026032505
and 18 more
#VU124401 - State Issues
CVE-2026-28861
CWE-371 Low
No
No
18.7.7 22H333, 26.4 23E246 25.03.2026 SB2026032503
SB2026032504
SB2026032505
and 8 more
#VU124400 - State Issues
CVE-2026-20665
CWE-371 High
No
No
18.7.7 22H333, 26.4 23E246 25.03.2026 SB2026032503
SB2026032504
SB2026032505
and 22 more
#VU124398 - Exposure of sensitive information to an unauthorized actor
CVE-2026-28864
CWE-200 Low
No
No
18.7.7 22H333, 26.4 23E246 25.03.2026 SB2026032504
SB2026032506
SB2026032507
and 4 more
#VU124390 - Improper Access Control
CVE-2026-28867
CWE-284 Low
No
No
18.7.7 22H333, 26.4 23E246 25.03.2026 SB2026032504
SB2026032506
SB2026032509
and 4 more
#VU124383 - Improper input validation
CVE-2026-28852
CWE-20 Low
No
No
18.7.7 22H333, 26.4 23E246 25.03.2026 SB2026032504
SB2026032506
SB2026032509
and 4 more
#VU124363 - Use After Free
CVE-2026-20687
CWE-416 Low
No
No
18.7.7 22H333, 26.4 23E246 25.03.2026 SB2026032504
SB2026032506
SB2026032509
and 3 more
#VU124360 - Information Exposure Through Log Files
CVE-2026-28868
CWE-532 Low
No
No
18.7.7 22H333, 26.4 23E246 25.03.2026 SB2026032504
SB2026032506
SB2026032507
and 4 more
#VU124335 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2026-28865
CWE-300 Medium
No
No
18.7.7 22H333, 26.4 23E246 25.03.2026 SB2026032504
SB2026032506
SB2026032507
and 5 more
#VU124085 - Protection Mechanism Failure
CVE-2026-20643
CWE-693 Medium
No
No
18.7.7 22H333, 26.3.1 (a) 23D771330a, 26.4 23E246 17.03.2026 SB2026031771
SB2026031772
SB2026031773
and 22 more
#VU118081 - Exposure of sensitive information to an unauthorized actor
CVE-2025-43376
CWE-200 Medium
No
No
18.7.7 22H333, 26.0 23A341 04.11.2025 SB2025110441
SB20250916387
SB2025091764
and 5 more


Showing elements 41 - 60 out of 252