This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.6. An app may be able to break out of its sandbox.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://support.apple.com/en-us/124149 |
|
History
Fri, 03 Apr 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* |
Fri, 03 Apr 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | macOS Sandbox Escalation via Improper Symlink Handling | |
| First Time appeared |
Apple
Apple macos |
|
| Vendors & Products |
Apple
Apple macos |
Thu, 02 Apr 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.6. An app may be able to break out of its sandbox. | |
| Weaknesses | CWE-59 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: apple
Published:
Updated: 2026-04-02T19:38:15.670Z
Reserved: 2025-04-16T15:24:37.096Z
Link: CVE-2025-43257
Updated: 2026-04-02T19:36:59.555Z
Status : Analyzed
Published: 2026-04-02T19:20:15.797
Modified: 2026-04-03T17:57:19.197
Link: CVE-2025-43257
No data.
OpenCVE Enrichment
Updated: 2026-04-03T09:16:46Z