CVE Vulnerabilities

CVE-2025-30430

Improper Authentication

Published: Mar 31, 2025 | Modified: Apr 07, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

This issue was addressed through improved state management. This issue is fixed in visionOS 2.4, iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4. Password autofill may fill in passwords after failing authentication.

Weakness

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Affected Software

Name Vendor Start Version End Version
Ipados Apple * 18.4 (excluding)
Iphone_os Apple * 18.4 (excluding)
Macos Apple 15.0 (including) 15.4 (excluding)
Visionos Apple * 2.4 (excluding)

Potential Mitigations

References