Logic Issue in macOS Affects User Data Access by Apps
CVE-2025-43322

5.5MEDIUM

Key Information:

Vendor

Apple

Status
Vendor
CVE Published:
4 November 2025

What is CVE-2025-43322?

A logic issue in macOS has been identified that potentially allows applications to access sensitive user information without appropriate authorization. This vulnerability has been addressed with enhanced checks in the latest versions of macOS, ensuring a more secure environment for users. It underscores the importance of keeping software up to date to mitigate risks associated with unauthorized data access.

Affected Version(s)

macOS < 14.8

macOS < 15.7

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.