CVE-2025-24249
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Mar 31, 2025
Updated: Apr 7, 2025
CWE ID 862
Summary
CVE-2025-24249 is a permissions issue affecting macOS Ventura, Sequoia, and Sonoma. The vulnerability allows an application to determine the existence of arbitrary paths on the file system, potentially leading to unauthorized access or information disclosure. Apple has addressed this issue with additional sandbox restrictions in versions 13.7.5, 15.4, and 14.7.5, respectively. This vulnerability can have serious security implications if exploited, making it essential for users to update their operating systems to the latest versions.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- MacOS
Affected Vendors
- Apple