Apple Photos Logic Vulnerability in Hidden Album Allowing Unauthorized Access

Vulnerability

A logic vulnerability has been identified in Apple Photos across multiple platforms, including macOS Ventura, iOS, iPadOS, and macOS Sequoia. This vulnerability allows photos in the Hidden Photos Album to be viewed without authentication. The issue arises from improper file handling, which has been addressed in the latest updates for each operating system.

Impact

Exploitation of this vulnerability allows unauthorized access to photos in the Hidden Photos Album.

Remediation

Users can update to macOS Ventura 13.7.2, iOS 18.2, iPadOS 18.2, iPadOS 17.7.3, macOS Sonoma 14.7.2, or macOS Sequoia 15.2 to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.7
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.