CVE Vulnerabilities

CVE-2025-31229

Weak Encoding for Password

Published: Jul 30, 2025 | Modified: Nov 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

A logic issue was addressed with improved checks. This issue is fixed in iOS 18.6 and iPadOS 18.6. Passcode may be read aloud by VoiceOver.

Weakness

Obscuring a password with a trivial encoding does not protect the password.

Affected Software

NameVendorStart VersionEnd Version
IpadosApple*18.6 (excluding)
Iphone_osApple*18.6 (excluding)

Potential Mitigations

References