CVE-2025-30456

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Mar 31, 2025
Updated: Apr 4, 2025
CWE ID 281

Summary

CVE-2025-30456 is a vulnerability affecting certain Apple operating systems. A parsing issue in the handling of directory paths was identified, allowing an application to potentially gain root privileges. This issue has been resolved in macOS Ventura 13.7.5, iOS 18.4, iPadOS 18.4, macOS Sequoia 15.4, and macOS Sonoma 14.7.5. The vulnerability was addressed through improved path validation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share