A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in macOS Sequoia 15.4. An app may be able to access sensitive user data.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://support.apple.com/en-us/122373 |
|
History
Thu, 11 Jun 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Directory Traversal Allowing Sensitive User Data Access in macOS | |
| Weaknesses | CWE-20 |
Thu, 11 Jun 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apple
Apple macos |
|
| Vendors & Products |
Apple
Apple macos |
Thu, 11 Jun 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-22 | |
| Metrics |
cvssV3_1
|
Thu, 11 Jun 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in macOS Sequoia 15.4. An app may be able to access sensitive user data. | |
| References |
|
Status: PUBLISHED
Assigner: apple
Published:
Updated: 2026-06-11T19:06:22.536Z
Reserved: 2025-01-17T00:00:45.017Z
Link: CVE-2025-24268
Updated: 2026-06-11T19:06:15.029Z
Status : Undergoing Analysis
Published: 2026-06-11T19:16:27.150
Modified: 2026-06-11T20:51:53.840
Link: CVE-2025-24268
No data.
OpenCVE Enrichment
Updated: 2026-06-11T21:00:07Z