Product of Apple
iOS, iPadOS, and macOS
As of , 11 Apple iOS, iPadOS, and macOS vulnerabilities are on CISA's list of exploited vulnerabilities; 0 were added in 2026. Patch first: CVE-2020-9934.
Patch first
| # | Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|---|
| 1 | CVE-2020-9934Input Validation | Apple iOS, iPadOS, and macOS | Patch this weekMetasploit module | 0.03 | ||
| 2 | CVE-2023-41064ImageIO Buffer Overflow | Apple iOS, iPadOS, and macOS | Patch this weekEPSS 0.53 | 0.53 | ||
| 3 | CVE-2025-43300Out-of-Bounds Write | Apple iOS, iPadOS, and macOS | Patch soon | 0.32 | ||
| 4 | CVE-2023-28206IOSurfaceAccelerator Out-of-Bounds Write | Apple iOS, iPadOS, and macOS | Patch soon | 0.23 | ||
| 5 | CVE-2022-22620Webkit Use-After-Free | Apple iOS, iPadOS, and macOS | Patch soon | 0.16 | ||
| 6 | CVE-2021-30858iOS, iPadOS, macOS Use-After-Free | Apple iOS, iPadOS, and macOS | Patch soon | 0.13 | ||
| 7 | CVE-2021-1870WebKit Remote Code Execution | Apple iOS, iPadOS, and macOS | Patch soon | 0.08 | ||
| 8 | CVE-2021-1871WebKit Remote Code Execution | Apple iOS, iPadOS, and macOS | Patch soon | 0.07 | ||
| 9 | CVE-2021-30900Out-of-Bounds Write | Apple iOS, iPadOS, and macOS | Patch soon | 0.05 | ||
| 10 | CVE-2022-32917Remote Code Execution | Apple iOS, iPadOS, and macOS | Patch soon | 0.06 | ||
| 11 | CVE-2021-30869Type Confusion | Apple iOS, iPadOS, and macOS | Patch soon | 0.04 |
Added each year
Show the numbers
| Period | entries added |
|---|---|
| 2021 | 4 |
| 2022 | 3 |
| 2023 | 3 |
| 2024 | none |
| 2025 | 1 |
| 2026 | none |