CVE-2025-43496

T

he issue was addressed by adding additional logic. This issue is fixed in watchOS 26.1, macOS Tahoe 26.1, iOS 26.1 and iPadOS 26.1, iOS 18.7.2 and iPadOS 18.7.2, macOS Sequoia 15.7.2, visionOS 26.1. Remote content may be loaded even when the 'Load Remote Images' setting is turned off.

Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

17 Dec 2025, 21:16

Type Values Removed Values Added
Summary (en) The issue was addressed by adding additional logic. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2. Remote content may be loaded even when the 'Load Remote Images' setting is turned off. (en) The issue was addressed by adding additional logic. This issue is fixed in watchOS 26.1, macOS Tahoe 26.1, iOS 26.1 and iPadOS 26.1, iOS 18.7.2 and iPadOS 18.7.2, macOS Sequoia 15.7.2, visionOS 26.1. Remote content may be loaded even when the 'Load Remote Images' setting is turned off.
References
  • () https://support.apple.com/en-us/125632 -
  • () https://support.apple.com/en-us/125634 -
  • () https://support.apple.com/en-us/125635 -
  • () https://support.apple.com/en-us/125638 -
  • () https://support.apple.com/en-us/125639 -

05 Nov 2025, 19:15

Type Values Removed Values Added
Summary (en) The issue was addressed by adding additional logic. This issue is fixed in watchOS 26.1, iOS 26.1 and iPadOS 26.1, macOS Sequoia 15.7.2, visionOS 26.1. Remote content may be loaded even when the 'Load Remote Images' setting is turned off. (en) The issue was addressed by adding additional logic. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2. Remote content may be loaded even when the 'Load Remote Images' setting is turned off.
References
  • {'url': 'https://support.apple.com/en-us/125632', 'tags': ['Release Notes', 'Vendor Advisory'], 'source': '[email protected]'}
  • {'url': 'https://support.apple.com/en-us/125635', 'tags': ['Release Notes', 'Vendor Advisory'], 'source': '[email protected]'}
  • {'url': 'https://support.apple.com/en-us/125638', 'tags': ['Release Notes', 'Vendor Advisory'], 'source': '[email protected]'}
  • {'url': 'https://support.apple.com/en-us/125639', 'tags': ['Release Notes', 'Vendor Advisory'], 'source': '[email protected]'}
  • () https://support.apple.com/en-us/125633 -

04 Nov 2025, 16:53

Type Values Removed Values Added
References () https://support.apple.com/en-us/125632 - () https://support.apple.com/en-us/125632 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/125635 - () https://support.apple.com/en-us/125635 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/125638 - () https://support.apple.com/en-us/125638 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/125639 - () https://support.apple.com/en-us/125639 - Release Notes, Vendor Advisory
First Time Apple ipados
Apple watchos
Apple macos
Apple
Apple visionos
Apple iphone Os
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*

04 Nov 2025, 16:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CWE CWE-359

04 Nov 2025, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-11-04 02:15

Updated : 2025-12-17 21:16


NVD link : CVE-2025-43496

Mitre link : CVE-2025-43496

CVE.ORG link : CVE-2025-43496


JSON object : View

CWE
CWE-359

Exposure of Private Personal Information to an Unauthorized Actor