boxscore/security
PRODUCT · referenceProducts · latest edition

Reference page — cumulative record through Wednesday, October 7, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

VisionOS

Product reference — VisionOS by Apple · sector: Operating Systems & Platforms. Cumulative disclosure record for this product across the archive.

Follow VisionOS — Atom feed

Product totals

Disclosures & known-exploited
All-timeYTD
CVEs297262
KEV entries154
Rate & severity
KEV/100Med CVSSMed EPSSCHML
5.16.5.003734851699

KEV/100 = KEV entries ÷ CVEs × 100. Med CVSS / Med EPSS are medians over this product's disclosures. C/H/M/L = disclosures by CVSS severity band.

Monthly disclosures

Trend (by first-seen month, full archive): ▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▁▂▁▁▁▂▁▂▃▆▃█▁

Last 12 months (new CVEs by first-seen day)
MonthNew CVEs
2025-118
2025-123
2026-010
2026-025
2026-0317
2026-040
2026-0510
2026-0632
2026-0768
2026-0831
2026-0999
2026-100

Notable CVEs

Ranked by the published formula: KEV → EPSS → CVSS → CVE ID.

Notable (ranked)
CVECVSSEPSS %ileSeverityKEVFirst seen
CVE-2024-443096.397.7MEDIUMYES2024-11-19
CVE-2025-312009.897.2CRITICALYES2025-04-16
CVE-2025-2408510.097.1CRITICALYES2025-01-27
CVE-2025-312019.896.5CRITICALYES2025-04-16
CVE-2024-232228.895.7HIGHYES2024-01-23
CVE-2024-443088.895.5HIGHYES2024-11-19
CVE-2025-435298.895.0HIGHYES2025-12-17
CVE-2025-2420110.089.8CRITICALYES2025-03-11
CVE-2025-312778.875.0HIGHYES2025-07-29
CVE-2024-232257.873.1HIGHYES2024-03-05
CVE-2024-232967.871.8HIGHYES2024-03-05
CVE-2026-207007.871.1HIGHYES2026-02-11
CVE-2025-432004.267.0MEDIUMYES2025-06-16
CVE-2025-435205.534.7MEDIUMYES2025-12-12
CVE-2025-435107.827.1HIGHYES2025-12-12

Recent CVEs

Most recently seen
CVECVSSEPSS %ileSeverityKEVFirst seen
CVE-2026-868883.32.9LOW—2026-09-14
CVE-2026-868873.34.1LOW—2026-09-14
CVE-2026-653577.85.8HIGH—2026-09-14
CVE-2026-846207.35.3HIGH—2026-09-14
CVE-2026-653987.85.1HIGH—2026-09-14
CVE-2026-868925.53.6MEDIUM—2026-09-14
CVE-2026-846005.419.3MEDIUM—2026-09-14
CVE-2026-653584.71.2MEDIUM—2026-09-14
CVE-2026-846155.53.3MEDIUM—2026-09-14
CVE-2026-846035.53.4MEDIUM—2026-09-14
CVE-2026-845135.54.4MEDIUM—2026-09-14
CVE-2026-846365.52.8MEDIUM—2026-09-14
CVE-2026-846165.53.3MEDIUM—2026-09-14
CVE-2026-845644.330.1MEDIUM—2026-09-14
CVE-2026-846226.26.6MEDIUM—2026-09-14

KEV entries

CISA Known Exploited Vulnerabilities (newest addition first)
CVEKEV addedCVSSEPSS %ileSeverity
CVE-2025-435202026-03-205.534.7MEDIUM
CVE-2025-312772026-03-208.875.0HIGH
CVE-2025-435102026-03-207.827.1HIGH
CVE-2026-207002026-02-127.871.1HIGH
CVE-2025-435292025-12-158.895.0HIGH
CVE-2025-432002025-06-164.267.0MEDIUM
CVE-2025-312002025-04-179.897.2CRITICAL
CVE-2025-312012025-04-179.896.5CRITICAL
CVE-2025-242012025-03-1310.089.8CRITICAL
CVE-2025-240852025-01-2910.097.1CRITICAL
CVE-2024-443082024-11-218.895.5HIGH
CVE-2024-443092024-11-216.397.7MEDIUM
CVE-2024-232962024-03-067.871.8HIGH
CVE-2024-232252024-03-067.873.1HIGH
CVE-2024-232222024-01-238.895.7HIGH

Related

Vendor: Apple — all products and the full vendor record.

Methodology

A product is a (vendor, product) pair as named in the affected-product data. Rate statistics are arithmetic over published figures. Counts key to first-seen day. Raw counts are not comparable across products; this is a reference page assembled from the public record, not a ranking by our judgment.

Sources. CVE Program (cvelistV5), NVD (NIST), CISA KEV, FIRST EPSS.