Medium severity6.7NVD Advisory· Published Mar 31, 2025· Updated Jun 17, 2026
CVE-2025-31192
CVE-2025-31192
Description
The issue was addressed with improved checks. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4. A website may be able to access sensor information without user consent.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
11cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*range: <18.4
- (no CPE)range: 18.4
- (no CPE)range: 0
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*range: <18.4
- (no CPE)range: 18.4
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*range: >=15.0,<15.4
- (no CPE)range: 0
- Range: 15.4
- Range: 18.4
- Range: 0
Patches
Vulnerability mechanics
References
6- support.apple.com/en-us/122371nvdVendor Advisory
- support.apple.com/en-us/122373nvdVendor Advisory
- support.apple.com/en-us/122379nvdVendor Advisory
- seclists.org/fulldisclosure/2025/Apr/2nvd
- seclists.org/fulldisclosure/2025/Apr/4nvd
- seclists.org/fulldisclosure/2025/Apr/8nvd
News mentions
0No linked articles in our index yet.