Sandbox Escape Vulnerability in Apple Operating Systems
CVE-2025-43407

Currently unrated

Key Information:

Vendor

Apple

Vendor
CVE Published:
4 November 2025

What is CVE-2025-43407?

This vulnerability allows an application to potentially escape its designated sandbox, compromising the security model designed to isolate user data and system resources. Apple has addressed this issue in their latest updates for visionOS, macOS, iOS, iPadOS, and tvOS by improving entitlements. Users are encouraged to update to the latest versions to enhance their security posture.

Affected Version(s)

iOS and iPadOS < 26.1

macOS < 14.8

macOS < 15.7

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-43407 : Sandbox Escape Vulnerability in Apple Operating Systems