Apple SharedFileList Input Validation Vulnerability Allowing Access to Sensitive User Data

Vulnerability

A vulnerability in the SharedFileList component of macOS Sequoia 15.7, macOS Sonoma 14.8, and macOS Tahoe 26 allows apps to access sensitive user data. This issue arises from inadequate input validation, which has been improved in the latest versions.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive user data by applications.

Added: Sep 16, 2025, 12:36 AM
Updated: Sep 16, 2025, 12:36 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
3.3
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.