CVE-2025-24133
Apple iOS Lock Screen Information Disclosure Vulnerability
Description
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
INFO
Published Date :
Sept. 15, 2025, 11:15 p.m.
Last Modified :
Oct. 2, 2025, 12:15 a.m.
Remotely Exploit :
No
Source :
[email protected]
CVSS Scores
Score | Version | Severity | Vector | Exploitability Score | Impact Score | Source |
---|---|---|---|---|---|---|
CVSS 3.1 | MEDIUM | 134c704f-9b21-4f2e-91b3-4a467353bcc0 |
Solution
- Update devices to iOS 26 or later.
- Update devices to iPadOS 26 or later.
We scan GitHub repositories to detect new proof-of-concept exploits. Following list is a collection of public exploits and proof-of-concepts, which have been published on GitHub (sorted by the most recently updated).
Results are limited to the first 15 repositories due to potential performance issues.
The following list is the news that have been mention
CVE-2025-24133
vulnerability anywhere in the article.

-
seclists.org
APPLE-SA-09-15-2025-1 iOS 26 and iPadOS 26
Full Disclosure mailing list archives From: Apple Product Security via Fulldisclosure <fulldisclosure () seclists org> Date: Mon, 15 Sep 2025 16:31:32 -0700 -----BEGIN PGP SIGNED MESSAGE----- Hash: SH ... Read more
The following table lists the changes that have been made to the
CVE-2025-24133
vulnerability over time.
Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability's severity, exploitability, or other characteristics.
-
CVE Modified by [email protected]
Oct. 02, 2025
Action Type Old Value New Value Changed Description This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 26 and iPadOS 26. Keyboard suggestions may display sensitive information on the lock screen. Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. Removed CVSS V3.1 CISA-ADP: AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N Removed CWE CISA-ADP: CWE-497 Removed CPE Configuration OR *cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* versions up to (excluding) 26.0 *cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* versions up to (excluding) 26.0 Removed Reference Apple Inc.: https://support.apple.com/en-us/125108 Removed Reference Type Apple Inc.: https://support.apple.com/en-us/125108 Types: Vendor Advisory -
CVE Rejected by [email protected]
Oct. 02, 2025
Action Type Old Value New Value -
Initial Analysis by [email protected]
Sep. 17, 2025
Action Type Old Value New Value Added CPE Configuration OR *cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* versions up to (excluding) 26.0 *cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* versions up to (excluding) 26.0 Added Reference Type Apple Inc.: https://support.apple.com/en-us/125108 Types: Vendor Advisory -
CVE Modified by 134c704f-9b21-4f2e-91b3-4a467353bcc0
Sep. 16, 2025
Action Type Old Value New Value Added CVSS V3.1 AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N Added CWE CWE-497 -
New CVE Received by [email protected]
Sep. 15, 2025
Action Type Old Value New Value Added Description This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 26 and iPadOS 26. Keyboard suggestions may display sensitive information on the lock screen. Added Reference https://support.apple.com/en-us/125108