Nix Privilege Escalation Vulnerability on macOS in Version 2.30.0

Vulnerability

A vulnerability in Nix version 2.30.0 on macOS allowed builds to be executed with elevated privileges (root) instead of the designated build users. This issue has been addressed in Nix version 2.30.1. No workarounds are available.

Impact

Exploitation of this vulnerability led to unauthorized privilege escalation, allowing builds to be executed as the root user.

Remediation

Users can upgrade to Nix version 2.30.1 to address this vulnerability.

Added: Jul 14, 2025, 9:34 PM
Updated: Jul 14, 2025, 9:34 PM

Vulnerability Rating

Custom Algorithm
spread
2.4
impact
2.5
exploitability
4.0
remediation
7.7
relevance
0.2
threat
3.2
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.