Local Code Execution Vulnerability in Mosh-Pro on macOS
CVE-2025-53811
4.8MEDIUM
What is CVE-2025-53811?
A local code execution vulnerability has been identified in Mosh-Pro for macOS, specifically related to the 'RunAsNode' fuse enabled configuration. This flaw allows an unprivileged local attacker to execute arbitrary code that inherits TCC (Transparency, Consent, and Control) permissions granted to Mosh-Pro by the user. While the access gained is limited to previously granted permissions, the attack could mislead users, as any attempts to access additional resources will prompt user approval under the guise of Mosh-Pro, obscuring the attacker's true intentions. Notably, this issue was identified in version 1.3.2 of Mosh-Pro, and the current status of a patch is uncertain due to a lack of response from the developers.
Affected Version(s)
Mosh-Pro MacOS 1.3.2