CVE-2025-24119
Severity CVSS v4.0:
Pending analysis
Type:
CWE-269
Improper Privilege Management
Publication date:
30/07/2025
Last modified:
31/07/2025
Description
This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.3, macOS Ventura 13.7.7, macOS Sonoma 14.7.7. An app may be able to execute arbitrary code out of its sandbox or with certain elevated privileges.
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* | 13.7.7 (excluding) | |
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* | 14.0 (including) | 14.7.7 (excluding) |
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* | 15.0 (including) | 15.3 (excluding) |
To consult the complete list of CPE names with products and versions, see this page