Apple macOS Tahoe LaunchServices Authorization Vulnerability Allowing Access to Protected User Data

Vulnerability

An authorization vulnerability has been identified in the LaunchServices component of Apple macOS Tahoe. This issue allows an application to potentially access sensitive user data by exploiting a flaw in state management. The vulnerability is present in macOS Tahoe versions prior to 26.4.

Impact

Exploitation of this vulnerability could lead to unauthorized access to protected user data by applications.

Remediation

Users can upgrade to macOS Tahoe 26.4 to address this vulnerability.

Added: Mar 25, 2026, 2:03 AM
Updated: Mar 25, 2026, 2:03 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
3.3
remediation
7.7
relevance
4.7
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.