Apple macOS Sequoia
cpe:2.3:o:apple:mac_os:*:*:*:*:*:*:*, +1 more
A vulnerability exists in the handling of environment variables within the Core Services framework of macOS Sequoia. This injection issue, which could allow an application to access sensitive user data, has been addressed in the latest update by implementing improved validation. The vulnerability was reported by Mickey Jin.
Exploitation of this vulnerability could lead to unauthorized access to protected user data.
Users can update to macOS Sequoia 15.6 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.