CVE-2025-31182

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Mar 31, 2025
Updated: Apr 4, 2025
CWE ID 862

Summary

CVE-2025-31182 is a vulnerability related to improper handling of symlinks. This issue permits an app to delete files for which it does not have the necessary permissions. This vulnerability has been addressed in various Apple operating systems, including visionOS 2.4, macOS Ventura 13.7.5, tvOS 18.4, iOS 18.4, and iPadOS 18.4, as well as macOS Sequoia 15.4 and macOS Sonoma 14.7.5. By improving the handling of symlinks, Apple has mitigated the risk of unintended file deletion.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share