First published: Fri Mar 21 2025(Updated: )
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.3, macOS Monterey 12.6.4, macOS Big Sur 11.7.5. A plug-in may be able to inherit app permissions and access user data.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
macOS Ventura | <13.3 | |
macOS | <12.6.4 | |
Apple macOS | <11.7.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-28207 is considered a moderate severity vulnerability.
To mitigate CVE-2023-28207, upgrade to macOS Ventura 13.3, macOS Monterey 12.6.4, or macOS Big Sur 11.7.5.
CVE-2023-28207 is a vulnerability that involves insufficient permission checks in macOS.
CVE-2023-28207 affects macOS Ventura prior to 13.3, macOS Monterey prior to 12.6.4, and macOS Big Sur prior to 11.7.5.
An attacker exploiting CVE-2023-28207 may inherit app permissions and access user data.