A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS Ventura 13.7.5, macOS Sequoia 15.4, macOS Sonoma 14.7.5. An app may be able to break out of its sandbox.
CVE ID: CVE-2025-31189
CVSS Base Severity: HIGH
CVSS Base Score: 8.2
CVSS Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:N
Vendor: Apple
Product: macOS
EPSS Score: 0.01% (probability of being exploited)
EPSS Percentile: 1.68% (scored less or equal to compared to others)
EPSS Date: 2025-06-07 (when was this score calculated)