Apple OpenSSH Injection Vulnerability Allowing Access to User-Sensitive Data

Vulnerability

A vulnerability in OpenSSH on macOS Ventura, Sequoia, and Sonoma allows apps to access user-sensitive data due to an injection issue that was not properly validated. This vulnerability has been addressed with improved validation. The issue affects multiple versions of macOS, including Ventura 13.7.5, Sequoia 15.4, and Sonoma 14.7.5.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive user data.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.7
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.