CVE-2025-24207

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Mar 31, 2025
Updated: Apr 7, 2025
CWE ID 276

Summary

CVE-2025-24207 is a permissions issue affecting macOS Ventura, Sequoia, and Sonoma. This vulnerability allowed certain applications to enable iCloud storage features without user consent. Apple addressed this issue by implementing additional restrictions in the affected operating system versions 13.7.5, 15.4, and 14.7.5. This security flaw could potentially lead to unauthorized access to users' iCloud data, making the fix an essential update for Apple users.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share