CVE-2025-66555
HIGHAirKeyboard iOS App 1.0.5 - RCE
Title source: llmDescription
AirKeyboard iOS App 1.0.5 contains a missing authentication vulnerability that allows unauthenticated attackers to type arbitrary keystrokes directly into the victim's iOS device in real-time without user interaction, resulting in full remote input control.
Exploits (1)
References (4)
Scores
CVSS v4
8.8
EPSS
0.0041
EPSS Percentile
61.6%
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:H/VA:L/SC:N/SI:N/SA:N
Details
CWE
CWE-306
Status
published
Products (1)
airkeyboardapp/AirKeyboard iOS App
1.0.5
Published
Dec 04, 2025
Tracked Since
Feb 18, 2026