A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.7.6, macOS Sequoia 15.5, macOS Sonoma 14.7.6. An attacker may gain access to protected parts of the file system.
CVE ID: CVE-2025-31247
CVSS Base Severity: HIGH
CVSS Base Score: 7.5
CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Vendor: Apple
Product: macOS
EPSS Score: 0.04% (probability of being exploited)
EPSS Percentile: 12.07% (scored less or equal to compared to others)
EPSS Date: 2025-06-10 (when was this score calculated)