CVE-2024-40852: Apple iPadOS
Medium severity, CVSS 5.3. EPSS: 0.5% chance of exploitation in the next 30 days.
This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 18 and iPadOS 18. An attacker may be able to see recent photos without authentication in Assistive Access.
Affected products
Published 2024-09-17. Last modified 2026-06-17.