Logic Issue in macOS Tahoe Management by Apple
CVE-2025-46281

8.4HIGH

Key Information:

Vendor

Apple

Status
Vendor
CVE Published:
17 December 2025

What is CVE-2025-46281?

A vulnerability in Apple’s macOS Tahoe was identified that allows an application to potentially escape its designated sandbox due to a flaw in logic checks. This issue has been resolved in version 26.2, ensuring that applications remain confined within their sandbox environment to enhance system security. For more detailed information, you can visit the official Apple support page.

Affected Version(s)

macOS < 26.2

References

CVSS V3.1

Score:
8.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-46281 : Logic Issue in macOS Tahoe Management by Apple