Known vulnerabilities in iPadOS 26.0.1 23A355 - page 23

Vendor: Apple Inc.
Software: iPadOS
Version: 26.0.1 23A355
Software CPE: cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
Total vulnerabilities: 476
Public exploits: 6
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting iPadOS version 26.0.1 23A355 iPadOS 26.0.1 23A355 is affected by 476 vulnerabilities: 2 critical, 20 high, 95 medium, 359 low Critical High Medium Low

Vulnerabilities (476)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU118066 - Improper Access Control
CVE-2025-43350
CWE-284 Low
No
No
26.1 23B85 04.11.2025 SB2025110435
#VU118065 - State Issues
CVE-2025-43450
CWE-371 Low
No
No
26.1 23B85, 18.7.2 22H124 04.11.2025 SB2025110435
SB2025110550
#VU118064 - Exposure of sensitive information to an unauthorized actor
CVE-2025-43449
CWE-200 Low
No
No
26.1 23B85 04.11.2025 SB2025110435
#VU118061 - Improper Access Control
CVE-2025-43442
CWE-284 Low
No
No
26.1 23B85, 18.7.2 22H124 04.11.2025 SB2025110435
SB2025110550
#VU118045 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2025-43503
CWE-451 Medium
No
No
18.7.2 22H124, 26.1 23B85 04.11.2025 SB2025110420
SB2025110422
SB2025110435
and 3 more
#VU118019 - Improper input validation
CVE-2025-43391
CWE-20 Low
No
No
26.1 23B85 04.11.2025 SB2025110422
SB2025110423
SB2025110424
and 1 more
#VU118016 - Improper Access Control
CVE-2025-43436
CWE-284 Low
No
No
26.1 23B85 04.11.2025 SB2025110422
SB2025110429
SB2025110435
and 2 more
#VU118007 - Improper Access Control
CVE-2025-43455
CWE-284 Low
No
No
26.1 23B85 04.11.2025 SB2025110422
SB2025110435
SB2025110436
and 1 more
#VU118001 - Protection Mechanism Failure
CVE-2025-43407
CWE-693 Low
Public exploit available
No
26.1 23B85 04.11.2025 SB2025110422
SB2025110423
SB2025110424
and 3 more
#VU117995 - Improper input validation
CVE-2025-43445
CWE-20 Low
No
No
18.7.2 22H124, 26.1 23B85 04.11.2025 SB2025110422
SB2025110423
SB2025110424
and 5 more
#VU117992 - Information Exposure Through Log Files
CVE-2025-43426
CWE-532 Low
No
No
26.1 23B85 04.11.2025 SB2025110422
SB2025110435
#VU117989 - Improper Link Resolution Before File Access ('Link Following')
CVE-2025-43448
CWE-59 Low
No
No
18.7.2 22H124, 26.1 23B85 04.11.2025 SB2025110422
SB2025110423
SB2025110424
and 5 more
#VU117986 - Information Exposure Through Log Files
CVE-2025-43423
CWE-532 Low
No
No
18.7.2 22H124, 26.1 23B85 04.11.2025 SB2025110422
SB2025110423
SB2025110435
and 2 more
#VU117981 - Improper Link Resolution Before File Access ('Link Following')
CVE-2025-43379
CWE-59 Low
No
No
26.1 23B85 04.11.2025 SB2025110422
SB2025110423
SB2025110424
and 4 more
#VU117975 - Memory corruption
CVE-2025-43462
CWE-119 Low
No
No
26.1 23B85 04.11.2025 SB2025110422
SB2025110429
SB2025110435
and 2 more
#VU117974 - Memory corruption
CVE-2025-43447
CWE-119 Low
No
No
26.1 23B85 04.11.2025 SB2025110422
SB2025110435
SB2025110436
and 1 more
#VU117971 - Improper Access Control
CVE-2025-43392
CWE-284 Medium
No
No
18.7.2 22H124, 26.1 23B85 04.11.2025 SB2025110415
SB2025110420
SB2025110422
and 22 more
#VU117969 - Memory corruption
CVE-2025-43429
CWE-119 Low
No
No
18.7.2 22H124, 26.1 23B85 04.11.2025 SB2025110415
SB2025110420
SB2025110422
and 23 more
#VU117970 - Memory corruption
CVE-2025-43421
CWE-119 Low
No
No
26.1 23B85 04.11.2025 SB2025110415
SB2025110420
SB2025110422
and 18 more
#VU117965 - Use After Free
CVE-2025-43432
CWE-416 Medium
No
No
26.1 23B85 04.11.2025 SB2025110415
SB2025110420
SB2025110422
and 20 more


Showing elements 441 - 460 out of 476