Apple Products Autocomplete Contact Information Logging Vulnerability

Vulnerability

A vulnerability exists in various Apple products, including macOS Sequoia 15.2, iOS 18.2, and iPadOS 18.2. This issue allows an application to access autocompleted contact details from Messages and Mail, which may be recorded in the system logs. The vulnerability arises from inadequate redaction of sensitive information before it is logged.

Impact

Exploitation of this vulnerability could lead to unauthorized access to personal contact information, potentially allowing for privacy violations or social engineering attacks.

Remediation

Users can update to macOS Sequoia 15.2, iOS 18.2, or iPadOS 18.2 to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
3.3
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.