Apple iPadOS
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*
A privacy vulnerability has been identified in the Crash Reporter component of various Apple operating systems, including iOS 18.7.7, iPadOS 18.7.7, macOS Sonoma 14.8.5, macOS Tahoe 26.4, tvOS 26.4, visionOS 26.4, and watchOS 26.4. This vulnerability allows apps to enumerate a user's installed applications. The issue arises from the Crash Reporter component inadvertently exposing information about installed apps, potentially leading to unauthorized app enumeration.
Exploitation of this vulnerability could result in unauthorized access to information about the user's installed applications, allowing an app to enumerate all apps installed on the device.
Users can update to the latest versions of iOS, iPadOS, macOS, tvOS, visionOS, and watchOS to address this vulnerability. Instructions for updating can be found on the Apple Support website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.