Apple Symlink Handling Vulnerability Allowing Access to User-Sensitive Data

Vulnerability

A vulnerability exists in the handling of symbolic links, which may allow an application to access sensitive user data. This issue affects multiple Apple operating systems, including iOS 26.3, iPadOS 26.3, macOS Sequoia 15.7.4, macOS Sequoia 15.7.5, macOS Sonoma 14.8.4, macOS Sonoma 14.8.5, macOS Tahoe 26.3, and macOS Tahoe 26.4.

Impact

Exploitation of this vulnerability could lead to unauthorized access to user-sensitive data.

Remediation

Users can update to iOS 26.3, iPadOS 26.3, macOS Sequoia 15.7.4, macOS Sequoia 15.7.5, macOS Sonoma 14.8.4, macOS Sonoma 14.8.5, macOS Tahoe 26.4, or macOS Tahoe 26.3 to address this vulnerability.

Added: Mar 25, 2026, 2:34 AM
Updated: Mar 25, 2026, 2:34 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
3.3
remediation
7.7
relevance
4.7
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.