CVE-2025-43228
The issue was addressed with improved UI. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6. Visiting a malicious website may lead to address bar spoofing.
- Affected products
- Astra Linux, Debian, Linuxmint, Apple Macos, Suse, Ubuntu, Ios, Ipados
- Apple Safari
- < 18.6
- Apple Ipados
- < 18.6
- Apple Iphone Os
- < 18.6
- CVSS 3.1
- 4.3 MEDIUM
- EPSS
- 0.9% (56th percentile)
- Weakness
- CWE-451
- NVD status
- Modified
- Published
- 2025-07-29
CVE-2025-43228 at NVD
1 known exploit for CVE-2025-43228
Proof-of-concept code and exploit modules indexed by Sploitus