CVE-2025-31229: Apple iPadOS

Critical severity, CVSS 9.1. EPSS: 0.8% chance of exploitation in the next 30 days.

A logic issue was addressed with improved checks. This issue is fixed in iOS 18.6 and iPadOS 18.6. Passcode may be read aloud by VoiceOver.

Affected products

  • Apple iPadOS: before 18.6 (fixed in 18.6)
  • Apple iPhone OS: before 18.6 (fixed in 18.6)

Published 2025-07-30. Last modified 2026-06-17.