CVE-2025-31244Protection Mechanism Failure in Apple Macos

Severity
8.8HIGHNVD
EPSS
0.1%
top 77.43%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 12
Latest updateMay 13

Description

A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS Sequoia 15.5. An app may be able to break out of its sandbox.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:HExploitability: 2.0 | Impact: 6.0

Affected Packages2 packages

NVDapple/macos< 15.5

🔴Vulnerability Details

1
GHSA
GHSA-v8vh-f89p-82w5: A file quarantine bypass was addressed with additional checks2025-05-13

📋Vendor Advisories

1
Apple
CVE-2025-31244: macOS Sequoia 15.52025-05-12
CVE-2025-31244 — Protection Mechanism Failure in Apple | cvebase