CVE-2025-24138
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Summary
CVE-2025-24138 is a newly identified vulnerability affecting multiple Apple operating systems, including macOS Ventura, Sequoia, and Sonoma. The issue stems from insufficient state management, which could allow a malicious application to gain unauthorized access to sensitive user information. Apple has addressed this vulnerability in the latest updates to these operating systems: macOS Ventura 13.7.3, macOS Sequoia 15.3, and macOS Sonoma 14.7.3. By improving state management, Apple has effectively mitigated the risk of this issue, safeguarding user information from potential attackers.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- MacOS
Affected Vendors
- Apple