CVE-2025-31254: Processing maliciously crafted web content may lead to unexpected URL redirection in Apple iOS and iPadOS
Severity: Type: vulnerabilityCVE-2025-31254
This issue was addressed with improved URL validation. This issue is fixed in Safari 26, iOS 26 and iPadOS 26. Processing maliciously crafted web content may lead to unexpected URL redirection.
CVE-2025-31254: Processing maliciously crafted web content may lead to unexpected URL redirection in Apple iOS and iPadOS
Unknown
Published: Mon Sep 15 2025 (09/15/2025, 22:34:24 UTC)
Source: CVE Database V5
Vendor/Project: Apple
Product: iOS and iPadOS
Description
This issue was addressed with improved URL validation. This issue is fixed in Safari 26, iOS 26 and iPadOS 26. Processing maliciously crafted web content may lead to unexpected URL redirection.
Technical Details
- Data Version
- 5.1
- Assigner Short Name
- apple
- Date Reserved
- 2025-03-27T16:13:58.336Z
- Cvss Version
- null
- State
- PUBLISHED
Threat ID: 68c8aa6cee2781683eebd546
Added to database: 9/16/2025, 12:08:12 AM
Last updated: 9/16/2025, 12:08:12 AM
Views: 1
Related Threats
CVE-2025-10429: SQL Injection in SourceCodester Pet Grooming Management Software
MediumVulnerabilityTue Sep 16 2025
CVE-2025-10440: OS Command Injection in D-Link DI-8100
MediumVulnerabilityTue Sep 16 2025
CVE-2025-10428: Unrestricted Upload in SourceCodester Pet Grooming Management Software
MediumVulnerabilityTue Sep 16 2025
CVE-2025-59328: CWE-502 Deserialization of Untrusted Data in Apache Software Foundation Apache Fory
MediumVulnerabilityTue Sep 16 2025
CVE-2025-10436: SQL Injection in Campcodes Computer Sales and Inventory System
MediumVulnerabilityTue Sep 16 2025
Actions
Please log in to the Console to use AI analysis features.
Need enhanced features?
Contact root@offseq.com for Pro access with improved analysis and higher rate limits.