Apple macOS Tahoe Injection Vulnerability in AppleMobileFileIntegrity Allowing Access to Sensitive User Data

Vulnerability

A vulnerability has been identified in the AppleMobileFileIntegrity component of macOS Tahoe, specifically in version 26.1. This injection issue allows an application to access sensitive user data. The vulnerability was addressed with improved validation. The issue was reported by Mickey Jin.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive user data by applications.

Added: Dec 12, 2025, 9:22 PM
Updated: Dec 12, 2025, 9:22 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
3.3
remediation
7.7
relevance
1.4
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.