Apple iOS and iPadOS User Tracking Vulnerability via Cache Management

Vulnerability

A vulnerability exists in iOS 26.1 and iPadOS 26.1 that allows a malicious app to track users between installs by improperly managing cache data. This issue could enable the app to identify other applications a user has installed, potentially leading to privacy concerns.

Impact

Exploitation of this vulnerability could allow an app to monitor user activity and app usage across installations, raising significant privacy issues.

Remediation

Users can update to iOS 26.1 or iPadOS 26.1 to address this vulnerability.

Added: Nov 4, 2025, 2:38 AM
Updated: Nov 4, 2025, 2:38 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
4.4
remediation
7.7
relevance
0.9
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.