CVE-2025-31267
13Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 4.6epss 0.2%
exploitation probability
0.2%top 93% of all CVEs
observed exploitation
nono source reports it
An authentication issue was addressed with improved state management. This issue is fixed in App Store Connect 3.0. An attacker with physical access to an unlocked device may be able to view sensitive user information.
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected products
Apple · App Store ConnectReferences
https://support.apple.com/en-us/123356