This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sonoma 14.4. An app may be able to create symlinks to protected regions of the disk.
CVE ID: CVE-2024-23285
Vendor: Apple
Product: macOS
EPSS Score: 0.05% (probability of being exploited)
EPSS Percentile: 18.42% (scored less or equal to compared to others)
EPSS Date: 2025-03-14 (when was this score calculated)