Home > Security Bulletins > Apple WebKit Vulnerability – CVE-2025-24201

Apple WebKit Vulnerability – CVE-2025-24201

Wednesday 12th March 2025

Apple WebKit Vulnerability

Apple has released security updates for a WebKit vulnerability (CVE-2025-24201) affecting macOS, iOS, iPadOS, and tvOS. This vulnerability would allow maliciously crafted web content to break out of Web Content sandbox. This is a supplementary fix for an attack that was blocked in iOS 17.2. (Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 17.2.)

Spotit recommends that users of macOS, iPhone, iPad, and Apple TV should updates to the latest OS version as soon as possible.

Patched Versions

macOS Sequoia 15.3.2

iOS 18.3.2 and iPadOS 18.3.2

Safari 18.3.1