CVE-2025-24225
MEDIUM 6.5EPSS 0.5%
An injection issue was addressed with improved input validation. This issue is fixed in iPadOS 17.7.7, iOS 18.5 and iPadOS 18.5. Processing an email may lead to user interface spoofing.
- CVSS v3.1
- 6.5 MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N - EPSS
- 0.50% chance of exploitation in the next 30 days, 41th percentile
- Published
- 2025-05-12
- Updated
- 2026-07-25
Proof-of-concept exploits (1)
- richeeta/DEFCON33-Siriously-Leaky8★ · 2025-08-31