CVE-2025-24173
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Mar 31, 2025
Updated: Apr 4, 2025
CWE ID 284
Summary
CVE-2025-24173 is a vulnerability that enables an app to bypass its sandbox restrictions. This issue has been resolved through added entitlement checks in the latest versions of visionOS 2.4, macOS Ventura 13.7.5, tvOS 18.4, iPadOS 17.7.6, iOS 18.4, iPadOS 18.4, macOS Sequoia 15.4, and macOS Sonoma 14.7.5. Previously, this vulnerability could allow unauthorized access or data theft by an affected app. Users are advised to update their systems to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.