Uncontrolled Search Path Element Vulnerability in Yandex Disk for MacOS
CVE-2025-5470
7.3HIGH
What is CVE-2025-5470?
The uncontrolled search path element vulnerability in Yandex Disk for MacOS permits search order hijacking, enabling malicious actors to execute unintended applications or scripts with elevated privileges. This flaw affects versions prior to 3.2.45.3275, rendering systems susceptible to manipulation. Users are advised to update to the latest version to mitigate potential security risks.
Affected Version(s)
Disk MacOS 0 < 3.2.45.3275
