Description
The issue was addressed with improved handling of caches. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, macOS Tahoe 26.2. An attacker with physical access may be able to view deleted notes.
Published: 2025-12-12
Score: 2.4 Low
EPSS: < 1% Very Low
KEV: No
Impact: Data Leakage of Deleted Notes
Action: Apply Patch
AI Analysis

Impact

The vulnerability involves improper handling of caches that can expose deleted notes. An attacker who has physical access to the device could read data that was previously thought to be removed, compromising user privacy. The weakness corresponds to CWE-524, where sensitive data is not adequately protected after deletion.

Affected Systems

Apple macOS operating systems are impacted. The issue is fixed in the following releases: macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, macOS Tahoe 26.2. All earlier versions of these OS code names may still be vulnerable.

Risk and Exploitability

The CVSS score is 2.4, indicating a low severity, and the EPSS score is less than 1%, suggesting a very small chance of exploitation. The vulnerability is not listed in CISA KEV. Likely exploitation requires physical access, which limits the practical threat, yet the privacy impact remains significant for sensitive notes.

Generated by OpenCVE AI on April 22, 2026 at 20:36 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update macOS to at least Sequoia 15.7.2, Sonoma 14.8.2, or Tahoe 26.2, the versions that include the cache handling fix
  • When updating, use the official Apple update mechanism to ensure the patch is applied correctly
  • Limit physical access to devices by using secure storage and locking mechanisms to reduce the risk of an insider attacker reading deleted data

Generated by OpenCVE AI on April 22, 2026 at 20:36 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 02 Apr 2026 20:30:00 +0000

Type Values Removed Values Added
Description The issue was addressed with improved handling of caches. This issue is fixed in macOS Sequoia 15.7.2, macOS Tahoe 26.2, macOS Sonoma 14.8.2. An attacker with physical access may be able to view deleted notes. The issue was addressed with improved handling of caches. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, macOS Tahoe 26.2. An attacker with physical access may be able to view deleted notes.

Wed, 17 Dec 2025 21:00:00 +0000

Type Values Removed Values Added
Description The issue was addressed with improved handling of caches. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonoma 14.8.2. An attacker with physical access may be able to view deleted notes. The issue was addressed with improved handling of caches. This issue is fixed in macOS Sequoia 15.7.2, macOS Tahoe 26.2, macOS Sonoma 14.8.2. An attacker with physical access may be able to view deleted notes.
References

Tue, 16 Dec 2025 21:45:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

Sun, 14 Dec 2025 21:30:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Apple macos Sequoia
Apple macos Sonoma
Vendors & Products Apple
Apple macos
Apple macos Sequoia
Apple macos Sonoma

Sat, 13 Dec 2025 23:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-524
Metrics cvssV3_1

{'score': 2.4, 'vector': 'CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 12 Dec 2025 21:15:00 +0000

Type Values Removed Values Added
Description The issue was addressed with improved handling of caches. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonoma 14.8.2. An attacker with physical access may be able to view deleted notes.
References

Subscriptions

Apple Macos Macos Sequoia Macos Sonoma
cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-04-02T18:25:54.548Z

Reserved: 2025-04-16T15:24:37.121Z

Link: CVE-2025-43410

cve-icon Vulnrichment

Updated: 2025-12-13T22:50:24.470Z

cve-icon NVD

Status : Modified

Published: 2025-12-12T21:15:54.110

Modified: 2026-04-02T19:20:41.590

Link: CVE-2025-43410

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-04-22T20:45:27Z

Weaknesses