CVE-2025-43356
CVE-2025-43356
Vexday Risk Score
13Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS 6.5EPSS 0.6%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
15 set 2025Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
The issue was addressed with improved handling of caches. This issue is fixed in Safari 26, iOS 18.7 and iPadOS 18.7, iOS 26 and iPadOS 26, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. A website may be able to access sensor information without user consent.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Produtos afetados
Apple · iOS and iPadOSApple · macOSApple · SafariApple · tvOSApple · visionOSApple · watchOSReferências
http://seclists.org/fulldisclosure/2025/Sep/49http://seclists.org/fulldisclosure/2025/Sep/53http://seclists.org/fulldisclosure/2025/Sep/56http://seclists.org/fulldisclosure/2025/Sep/57http://seclists.org/fulldisclosure/2025/Sep/59https://support.apple.com/en-us/125108https://support.apple.com/en-us/125109https://support.apple.com/en-us/125110https://support.apple.com/en-us/125113https://support.apple.com/en-us/125114https://support.apple.com/en-us/125115https://support.apple.com/en-us/125116