CVE-2025-24232
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Mar 31, 2025
Updated: Apr 7, 2025
CWE ID 200
Summary
CVE-2025-24232 is a vulnerability affecting multiple Apple operating systems, including macOS Ventura, Sequoia, and Sonoma. The issue stems from insufficient state management, which could allow a malicious app to gain unauthorized access to arbitrary files on the affected system. This vulnerability has been addressed in the latest updates for each operating system - macOS Ventura 13.7.5, macOS Sequoia 15.4, and macOS Sonoma 14.7.5. Users are strongly encouraged to apply these updates to mitigate the potential risks associated with this security flaw.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- MacOS
Affected Vendors
- Apple