CVE-2025-43503

An inconsistent user interface issue was addressed with improved state management. This issue is fixed in watchOS 26.1, macOS Tahoe 26.1, iOS 26.1 and iPadOS 26.1, Safari 26.1, iOS 18.7.2 and iPadOS 18.7.2, visionOS 26.1. Visiting a malicious website may lead to user interface spoofing.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-11-04 02:15

Updated : 2025-12-17 21:16


NVD link : CVE-2025-43503

Mitre link : CVE-2025-43503

CVE.ORG link : CVE-2025-43503


JSON object : View

Products Affected

apple

  • ipados
  • iphone_os
  • visionos
  • safari
  • watchos
CWE
CWE-290

Authentication Bypass by Spoofing