Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://support.apple.com/en-us/122373 |
|
Fri, 12 Jun 2026 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* |
Fri, 12 Jun 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Symlink Abuse Allows Apps to Read Protected User Data on macOS |
Thu, 11 Jun 2026 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-20 CWE-284 |
Thu, 11 Jun 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Symlink Abuse Allows Apps to Read Protected User Data on macOS | |
| First Time appeared |
Apple
Apple macos |
|
| Weaknesses | CWE-20 CWE-284 |
|
| Vendors & Products |
Apple
Apple macos |
Thu, 11 Jun 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-59 | |
| Metrics |
cvssV3_1
|
Thu, 11 Jun 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.4. An app may be able to access protected user data. | |
| References |
|
Status: PUBLISHED
Assigner: apple
Published:
Updated: 2026-06-11T19:33:29.543Z
Reserved: 2025-04-22T21:13:49.959Z
Link: CVE-2025-46293
Updated: 2026-06-11T19:33:19.922Z
Status : Analyzed
Published: 2026-06-11T19:16:34.407
Modified: 2026-06-12T12:36:54.267
Link: CVE-2025-46293
No data.
OpenCVE Enrichment
Updated: 2026-06-12T00:00:15Z