CVE Vulnerabilities

CVE-2025-31229

Weak Encoding for Password

Published: Jul 30, 2025 | Modified: Jul 31, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A logic issue was addressed with improved checks. This issue is fixed in iOS 18.6 and iPadOS 18.6. Passcode may be read aloud by VoiceOver.

Weakness

Obscuring a password with a trivial encoding does not protect the password.

Affected Software

Name Vendor Start Version End Version
Ipados Apple * 18.6 (excluding)
Iphone_os Apple * 18.6 (excluding)

Potential Mitigations

References