Description
A permissions issue was addressed with improved validation. This issue is fixed in Xcode 27, macOS Golden Gate 27. An app may be able to access user-sensitive data.
CVSS breakdown
CVSS 3.1
Attack Vector
Local
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None
Affected products
- Apple / macOS0 – 27
- Apple / macOS27.0
- Apple / Xcode0 – 27
- Apple / Xcode27.0
References
- VENDOR_ADVISORYhttps://support.apple.com/en-us/149035
- VENDOR_ADVISORYhttps://support.apple.com/en-us/149040
Updated 14m ago · 8 sources