CVE-2022-46725: Apple iPadOS

Medium severity, CVSS 4.3. EPSS: 0.6% chance of exploitation in the next 30 days.

A spoofing issue existed in the handling of URLs. This issue was addressed with improved input validation. This issue is fixed in iOS 16.4 and iPadOS 16.4. Visiting a malicious website may lead to address bar spoofing.

Affected products

  • Apple iPadOS: before 16.4 (fixed in 16.4)
  • Apple iPhone OS: before 16.4 (fixed in 16.4)

Published 2023-08-14. Last modified 2026-06-17.