This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Ventura 13.7.5, macOS Sequoia 15.4, macOS Sonoma 14.7.5. An app may be able to access sensitive user data.
Metrics
Affected Vendors & Products
References
History
Mon, 03 Nov 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 07 Apr 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apple
Apple macos |
|
| CPEs | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Apple
Apple macos |
Tue, 01 Apr 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 | |
| Metrics |
cvssV3_1
|
Mon, 31 Mar 2025 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Ventura 13.7.5, macOS Sequoia 15.4, macOS Sonoma 14.7.5. An app may be able to access sensitive user data. | |
| References |
|
Status: PUBLISHED
Assigner: apple
Published: 2025-03-31T22:24:15.951Z
Updated: 2025-11-03T21:15:19.959Z
Reserved: 2025-03-22T00:04:43.720Z
Link: CVE-2025-30450
Updated: 2025-04-01T15:37:34.608Z
Status : Modified
Published: 2025-03-31T23:15:26.643
Modified: 2025-11-03T22:18:46.960
Link: CVE-2025-30450
No data.