ZDI-26-231: Apple macOS Exposure of Sensitive Information to Unauthorized Sphere Information Disclosure Vulnerability

Kurzinfo

Metadaten

  • Original (extern): Link oeffnen
  • Veroeffentlicht: 2026-03-30 05:00 UTC
  • Importiert: 2026-05-15 04:49 UTC
  • CVSS: 6.2
  • Quelle-ID: zdi_pub
  • uid_hash: f631007a6da0b547062c2fdfbcc015fab5a3a001dab1f3b41cc1724bde59e62d

Inhalt

This vulnerability allows local attackers to disclose sensitive information on affected installations of Apple macOS. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 3.8. The following CVEs are assigned: CVE-2026-20695.

Verknuepfte CVEs

CVE-ID CVE-Schwere CVSS (CVE.org) EPSS EPSS-Pctl Veroeffentlicht (CVE.org)

CVE-2026-20695

MEDIUM 6.2 - - 2026-03-25

Quellen-Details

Bezeichnung Name Kategorie Tags Zielgruppe Sprache Feed-URL
Zero Day Initiative (Published)

zdi_pub

threat_intel - de https://www.zerodayinitiative.com/rss/published/