CVE-2014-4450: Apple iPhone OS

Low severity, CVSS 1.9. EPSS: 0.3% chance of exploitation in the next 30 days.

The QuickType feature in the Keyboards subsystem in Apple iOS before 8.1 collects typing-prediction data from fields with an off autocomplete attribute, which makes it easier for attackers to discover credentials by reading credential values within unintended DOM input elements.

Affected products

  • Apple iPhone OS: up to and including 8.0.2

Published 2014-10-22. Last modified 2026-06-17.