Apple macOS File Quarantine Bypass Vulnerability Allowing Sandbox Escape

Vulnerability

A vulnerability exists in Apple macOS Sonoma and macOS Sequoia that allows an application to bypass file quarantine measures, potentially leading to unauthorized access or actions within the user's environment. This issue arises from insufficient checks that could enable an app to break out of its designated sandbox, where it is normally restricted from accessing certain system resources or user data.

Impact

Exploitation of this vulnerability could allow an application to escape its sandbox restrictions, gaining access to user-sensitive data or system resources that are typically off-limits.

Remediation

Users can update to macOS Sonoma 14.8.2 or macOS Sequoia 15.7.2 to address this vulnerability.

Added: Nov 4, 2025, 3:03 AM
Updated: Nov 4, 2025, 3:03 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
4.7
remediation
7.7
relevance
0.9
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.