4.3

CVE-2026-65355

An information disclosure issue was addressed with improved state management. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, visionOS 26.6.1. A website may be able to determine a user's IP address with Private Relay turned on.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Apple ≫ iPadOS Version < 18.7.10
Apple ≫ iPadOS Version >= 26.0 < 26.6.1
Apple ≫ iPhone OS Version < 18.7.10
Apple ≫ iPhone OS Version >= 26.0 < 26.6.1
Apple ≫ macOS Version < 26.6.2
Apple ≫ visionOS Version < 26.6.1
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.26% 0.173
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
CISA-ADP 4.3 2.8 1.4
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
CWE-642 External Control of Critical State Data

The product stores security-critical state information about its users, or the product itself, in a location that is accessible to unauthorized actors.

https://support.apple.com/en-us/148287
Vendor Advisory
Release Notes
https://support.apple.com/en-us/148281
Vendor Advisory
Release Notes
https://support.apple.com/en-us/148282
Vendor Advisory
Release Notes
https://support.apple.com/en-us/148353
Vendor Advisory
Release Notes