The issue was addressed by adding additional logic. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2. Remote content may be loaded even when the 'Load Remote Images' setting is turned off.
References
| Link | Resource |
|---|---|
| https://support.apple.com/en-us/125633 |
Configurations
Configuration 1 (hide)
|
History
05 Nov 2025, 19:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
| Summary | (en) The issue was addressed by adding additional logic. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2. Remote content may be loaded even when the 'Load Remote Images' setting is turned off. |
04 Nov 2025, 16:53
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://support.apple.com/en-us/125632 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/125635 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/125638 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/125639 - Release Notes, Vendor Advisory | |
| First Time |
Apple visionos
Apple Apple macos Apple iphone Os Apple ipados Apple watchos |
|
| CPE | cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* |
04 Nov 2025, 16:15
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-359 | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
04 Nov 2025, 02:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-11-04 02:15
Updated : 2025-11-05 19:15
NVD link : CVE-2025-43496
Mitre link : CVE-2025-43496
CVE.ORG link : CVE-2025-43496
JSON object : View
Products Affected
apple
- ipados
- macos
- watchos
- iphone_os
- visionos
CWE
CWE-359
Exposure of Private Personal Information to an Unauthorized Actor
