Apple macOS WindowServer Pasteboard Data Exposure Vulnerability

Vulnerability

A vulnerability in the WindowServer component of Apple macOS was introduced by a configuration issue that allowed an application to trick a user into copying sensitive data to the pasteboard. This vulnerability has been addressed with additional restrictions. The issue is present in multiple macOS versions, including Sequoia 15.7, Sonoma 14.8, and Tahoe 26.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive data through the pasteboard.

Remediation

Users can upgrade to macOS Sequoia 15.7, macOS Sonoma 14.8, or macOS Tahoe 26 to address this vulnerability.

Added: Sep 16, 2025, 12:22 AM
Updated: Sep 16, 2025, 12:22 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.4
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.