CVE-2025-24270

CVSS 3.1 Score 5.7 of 10 (medium)

Details

Published Apr 29, 2025
Updated: Apr 30, 2025
CWE ID 200

Summary

CVE-2025-24270 is a recently identified vulnerability that affected multiple Apple operating systems, including macOS Sequoia, tvOS, macOS Ventura, iPadOS, macOS Sonoma, and iOS. The issue involved sensitive user information being potentially leaked by an attacker present on the local network. Apple addressed this vulnerability by removing the vulnerable code in updates for macOS Sequoia 15.4, tvOS 18.4, macOS Ventura 13.7.5, iPadOS 17.7.6, macOS Sonoma 14.7.5, iOS 18.4, and iPadOS 18.4. Users are strongly advised to install these updates to protect their devices and information from unauthorized access.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share