KEV · Actively exploited
CVE-2025-24200
N/A
KEV
[Apple Accessibility] A physical attack may disable USB Restricted Mode on a locked device. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals.
EPSS
48.43%
moderate exploit risk
percentile 97.8%
CISA Known Exploited Vulnerability
- Added to KEV
- 2025-02-12
- Remediation deadline
- 2025-03-05
- Required action
- Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
- Ransomware
- No
OS versions that fix this CVE
This CVE is resolved by the following OS security releases. Update the OS to at least the listed version.