Security Vulnerability in Arduino IDE for macOS
CVE-2025-64723
What is CVE-2025-64723?
The Arduino IDE for macOS, prior to version 2.3.7, is vulnerable due to its overly permissive security entitlements. This misconfiguration allows attackers to inject malicious dynamic libraries into the application process, which can circumvent macOS's Hardened Runtime protections. Through this vulnerability, unauthorized users can gain access to all Transparency, Consent, and Control (TCC) permissions that the application has been granted. The issue has been addressed in the 2.3.7 release, which secures the environment against such attacks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
arduino-ide < 2.3.7
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved
