CVE-2025-24148

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Mar 31, 2025
Updated: Apr 4, 2025
CWE ID 354

Summary

CVE-2025-24148 is a vulnerability impacting macOS systems, specifically Ventura 13.7 and below, Sequoia 15.4 and below, and Sonoma 14.7.5 and below. The issue stems from improper handling of executable types leading to bypassed Gatekeeper checks. A maliciously crafted JAR file can exploit this weakness, potentially putting user data and system security at risk. Apple has released updates to address the vulnerability, users are advised to install these patches as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share