PT-2025-37781 · Apple · Safari+3

Evan Waelde

·

Published

2025-09-15

·

Updated

2025-09-16

·

CVE-2025-31254

CVSS v2.0

5.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions Safari versions prior to 26 iOS versions prior to 26 iPadOS versions prior to 26
Description Processing maliciously crafted web content may lead to unexpected URL redirection due to improved URL validation.
Recommendations Update Safari to version 26. Update iOS to version 26. Update iPadOS to version 26.

Fix

Incorrect Authorization

Weakness Enumeration

Related Identifiers

BDU:2025-11288
CVE-2025-31254

Affected Products

Apple Macos
Safari
Ios
Ipados