Sandbox Escape Vulnerability in Apple Operating Systems
CVE-2025-43407 
Currently unrated
Key Information:
- Vendor
 Apple
- Vendor
 - CVE Published:
 - 4 November 2025
 
What is CVE-2025-43407?
This vulnerability allows an application to potentially escape its designated sandbox, compromising the security model designed to isolate user data and system resources. Apple has addressed this issue in their latest updates for visionOS, macOS, iOS, iPadOS, and tvOS by improving entitlements. Users are encouraged to update to the latest versions to enhance their security posture.
Affected Version(s)
iOS and iPadOS < 26.1
macOS < 14.8
macOS < 15.7