Apple iOS and iPadOS Notes App Cache Handling Vulnerability Allowing Access to Locked Note Images

Vulnerability

A vulnerability exists in the Notes application on Apple devices running iOS 18.7, iPadOS 18.7, iOS 26, and iPadOS 26. This issue allows an attacker with physical access to an unlocked device to view an image from the most recently accessed locked note. The vulnerability arises from improper cache management, which has been addressed in the latest software updates.

Impact

Exploitation of this vulnerability could lead to unauthorized access to images in locked notes, potentially exposing sensitive information.

Remediation

Users can update to iOS 18.7, iPadOS 18.7, iOS 26, or iPadOS 26 to address this vulnerability.

Added: Sep 16, 2025, 12:46 AM
Updated: Sep 16, 2025, 12:46 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
3.3
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.