PT-2025-51912 · Apple · Visionos+5

Floeki

+1

·

Published

2025-12-12

·

Updated

2026-01-23

·

CVE-2025-46288

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions visionOS versions prior to 26.2 iOS versions prior to 26.2 iPadOS versions prior to 26.2 watchOS versions prior to 26.2 macOS versions prior to Tahoe 26.2
Description An issue involving insufficient permissions restrictions was identified. This could allow an application to access sensitive payment tokens.
Recommendations Update visionOS to version 26.2. Update iOS to version 26.2. Update iPadOS to version 26.2. Update watchOS to version 26.2. Update macOS to Tahoe version 26.2.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2025-46288

Affected Products

Apple Macos
Ios
Ipados
Macos Tahoe
Visionos
Watchos