Apple AppKit Unsigned Service Launch Vulnerability on Intel Macs

Vulnerability

A vulnerability exists in the AppKit component of macOS versions Sequoia 15.7, Sonoma 14.8, and Tahoe 26. This issue allows unsigned services to launch on Intel-based Macs, potentially leading to unauthorized access to protected user data. The vulnerability arises from insufficient restrictions on service signing, enabling apps to bypass normal safeguards and access sensitive information.

Impact

Exploitation of this vulnerability could result in unauthorized access to protected user data.

Added: Sep 16, 2025, 12:14 AM
Updated: Sep 16, 2025, 12:14 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.4
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.