CVE-2025-43245
A downgrade issue was addressed with additional code-signing restrictions. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS Ventura 13.7.7. An app may be able to access protected user data.
- Affected products
- Apple Macos
- Apple Macos
- < 13.7.7, 14.7.7, 15.6
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 0.7% (50th percentile)
- Weakness
- CWE-290
- NVD status
- Modified
- Published
- 2025-07-29
CVE-2025-43245 at NVD
3 known exploits for CVE-2025-43245
Proof-of-concept code and exploit modules indexed by Sploitus