CVE-2025-43358

high

Description

A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, iOS 18.7 and iPadOS 18.7, macOS Tahoe 26, iOS 26 and iPadOS 26. A shortcut may be able to bypass sandbox restrictions.

References

https://thehackernews.com/2025/09/apple-backports-fix-for-cve-2025-43300.html

https://support.apple.com/en-us/125112

https://support.apple.com/en-us/125111

https://support.apple.com/en-us/125110

https://support.apple.com/en-us/125109

https://support.apple.com/en-us/125108

Details

Source: Mitre, NVD

Published: 2025-09-15

Updated: 2025-09-17

Risk Information

CVSS v2

Base Score: 6.8

Vector: CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C

Severity: Medium

CVSS v3

Base Score: 8.8

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

Severity: High

EPSS

EPSS: 0.00014