Impact
An access issue related to macOS sandbox restrictions allows an application to read user‑sensitive data. The flaw enables bypassing normal sandbox boundaries, enabling privileged data exposure. This can lead to exposed private information without proper authorization, compromising confidentiality.
Affected Systems
Apple macOS is affected. The vulnerability impacts macOS Golden Gate 27, macOS Sequoia 15.8, and macOS Tahoe 26.7. No other Apple operating systems at this time.
Risk and Exploitability
The exploitability requires local execution of an application that can leverage the sandbox misconfiguration. The CVSS score is 5.5, indicating moderate severity. Based on the description, it is inferred that the likely attack vector is local execution of a malicious application. Attack install a malicious application that bypasses the updated sandbox controls. EPSS score is < 1% and the CVE is not listed in the CISA KEV catalog. Immediate action is still recommended.
OpenCVE Enrichment