CVE-2025-46291
published 2025-12-17CVE-2025-46291: A logic issue was addressed with improved validation. This issue is fixed in macOS Tahoe 26.2. An app may bypass Gatekeeper checks.
PriorityP340high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.21%
11.4th percentile
A logic issue was addressed with improved validation. This issue is fixed in macOS Tahoe 26.2. An app may bypass Gatekeeper checks.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | macos | < 26.2 | 26.2 |
| apple | macos_tahoe | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-rqfc-pc98-68h2: A logic issue was addressed with improved validation
ghsa_unreviewed·2025-12-17
CVE-2025-46291 [HIGH] CWE-693 GHSA-rqfc-pc98-68h2: A logic issue was addressed with improved validation
A logic issue was addressed with improved validation. This issue is fixed in macOS Tahoe 26.2. An app may bypass Gatekeeper checks.
Apple
CVE-2025-46291: macOS Tahoe 26.2
vendor_apple·2025-12-12·CVSS 7.8
CVE-2025-46291 [HIGH] CVE-2025-46291: macOS Tahoe 26.2
Apple Security Update: About the security content of macOS Tahoe 26.2
Product: macOS Tahoe
Version: 26.2
CVE: CVE-2025-46291
Component: LaunchServices
Impact: An app may bypass Gatekeeper checks
Description: A logic issue was addressed with improved validation.
No detection rules found.
No public exploits indexed.
2025-12-17
Published