Impact
The vulnerability arises from a flaw in the authentication mechanism that allows sensitive data—specifically user notes—to be exposed from the lock screen. An attacker with physical possession of a device can view these notes without unlock credentials, thereby compromising confidentiality of personal information. This weakness is classified as CWE‑287, authentication bypass.
Affected Systems
Apple's iOS and iPadOS devices are affected. The issue persists in all versions prior to iOS 18.5 and iPadOS 18.5, as well as any iPadOS version older than 17.7.7. The fix is implemented in iOS 18.5, iPadOS 18.5, and iPadOS 17.7.7 releases.
Risk and Exploitability
The CVSS score of 6.8 indicates a medium severity, while the EPSS score of less than 1 % suggests a low likelihood of exploitation at this time. The vulnerability is not listed in the CISA KEV catalog. Because the capability to access notes requires physical possession of the device, the likely attack vector is a local, physical attack, potentially carried out by an intimate or opportunistic adversary.
OpenCVE Enrichment
EUVD