Symlink Vulnerability in macOS by Apple
CVE-2025-43461

Currently unrated

Key Information:

Vendor

Apple

Status
Vendor
CVE Published:
12 December 2025

What is CVE-2025-43461?

A vulnerability exists in macOS Tahoe that could allow unauthorized applications to access protected user data due to insufficient validation of symbolic links. This issue has been addressed in version 26.1 of macOS Tahoe, enhancing security measures to prevent potential exploitation.

Affected Version(s)

macOS < 26.1

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.