CVE-2025-31195 — Improper Access Control in Apple Macos
Severity
6.3MEDIUMNVD
EPSS
0.1%
top 76.07%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 12
Latest updateMay 13
Description
The issue was addressed by adding additional logic. This issue is fixed in macOS Sequoia 15.4. An app may be able to break out of its sandbox.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:N/I:H/A:NExploitability: 1.8 | Impact: 4.0