Apple macOS File Quarantine Bypass Vulnerability Allowing Sandbox Escape

Vulnerability

A vulnerability exists in the file quarantine mechanism of macOS, allowing an application to potentially escape its sandbox restrictions. This issue has been addressed with additional checks and is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, and macOS Tahoe 26.

Impact

Exploitation of this vulnerability could lead to unauthorized access or modification of data, or allow an application to perform actions outside of its intended sandboxed environment.

Added: Sep 16, 2025, 12:08 AM
Updated: Sep 16, 2025, 12:08 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
1.3
exploitability
4.4
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.