WhatsApp Fixes Zero-Click Vulnerability that Affects iOS, macOS Versions of the App

The WhatsApp bug, alongside a separate OS-level flaw on Apple platforms, could have been used to carry out targeted attacks.

Advertisement
Written by Akash Dutta, Edited by Ketan Pratap | Updated: 1 September 2025 13:28 IST
Highlights
  • The security flaw has been labelled CVE-2025-55177
  • WhatsApp has fixed the vulnerability
  • Apple had fixed the security flaw earlier this month

The company has reportedly found 200 potential victims of the flaw

Photo Credit: Unsplash/Mika Baumeister

WhatsApp has fixed a zero-click security vulnerability, which could have been used to carry out sophisticated attacks against targeted individuals, the company said. The flaw affected the Meta-owned messenger app's iOS and macOS versions, and could “trigger processing of content from an arbitrary URL on a target's device.” While the flaw itself was not particularly dangerous, a separate operating system-level vulnerability in Apple's platforms could enable direct hacking attempts against the devices. Notably, both security issues have been fixed.

WhatsApp Says Hackers Could Have exploited the Security Flaw

In a security update, WhatsApp detailed a zero-click flaw that could have been exploited by hackers to carry out a sophisticated attack against targeted users. The vulnerability, designated CVE-2025-55177, enabled “incomplete authorisation of linked device synchronisation messages,” and could have allowed an unrelated user to trigger the processing of content from an arbitrary URL on a target's device.

To explain, normally, when a user links devices (via WhatsApp Web or WhatsApp for Mac), messages between devices are only processed if they come from a legitimate and authorised source. However, in this case, these checks were incomplete, and a malicious actor could trick WhatsApp into processing content from a URL, even if it did not originate from an authenticated device.

Advertisement

As per the company, the vulnerability impacted WhatsApp for iOS prior to v2.25.21.73, WhatsApp Business for iOS v2.25.21.78, and WhatsApp for Mac v2.25.21.78.

Advertisement

WhatsApp highlighted that, while the vulnerability itself would not have been deemed dangerous, the existence of an OS-level vulnerability on Apple platforms resulted in the possibility that hackers could break into targeted devices. Designated CVE-2025-43300, this vulnerability was fixed by the iPhone maker earlier this month. The company also urged users to update their devices immediately.

According to a TechCrunch report, Meta spokesperson Margarita Franklink said that the vulnerability was spotted and fixed a few weeks ago. Additionally, the company had sent fewer than 200 notifications to WhatsApp users who might have been affected by the security flaw.

Advertisement

WhatsApp for iOS and WhatsApp for macOS users should update their apps to the latest version, even if they did not receive any update from the company, to ensure their security.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: WhatsApp, iOS, macOS, Apple, Cybersecurity, Apps
Advertisement

Related Stories

Popular Mobile Brands
  1. iPad Air (2026) With M4 Chip Launched in India at This Price
  2. Bluepoint's Bloodborne Remake Pitch Was Turned Down by FromSoftware: Report
  3. The Motorola Razr Fold Just Made an Appearance on Geekbench Ahead of MWC
  4. Best All-in-One Laser Printers for Home and Small Businesses
  5. iPhone 17e Launched in India With MagSafe, 48-Megapixel Camera: See Price
  6. Tecno Unveils Camon 50 Series, AI Innovations, Lamborghini Tie-Up at MWC
  1. Total Lunar Eclipse 2026: Where and How to See the Rare Blood Moon
  2. Poco X8 Series, Poco C85x 5G Teased on Flipkart, Could Launch in India in March
  3. iPad Air (2026) Launched in India With M4 Chip, Up to 13-Inch Display: Price, Specifications
  4. iPhone 17e Launched in India With MagSafe, Ceramic Shield 2 and A19 Chip: Price, Specifications
  5. MWC 2026: Tecno Camon 50 Series Launched as Firm Unveils Modular Concept Phone, Lamborghini Collaboration
  6. Samsung Galaxy S26 Ultra's Successor Tipped to Feature 200-Megapixel ISOCELL HPA Sensor With LOFIC
  7. Moto Buds 2 Plus Launched With Dynamic ANC, Sound by Bose Alongside Moto Buds 2 at MWC 2026
  8. MediaTek Set to Demonstrate 6G, 5G-Advanced, Edge AI Innovations at ‘AI For Life’ Showcase at MWC 2026
  9. MWC 2026: Lenovo Unveils New Yoga, IdeaPad Series Laptop Models Alongside Legion Tab (2026), Idea Tab Pro Gen 2
  10. With Love OTT Release Date: When and Where to Watch it Online?
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.