CVE-2025-46283: Infoleak
A logic issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macOS Tahoe 26.2. An app may be able to access sensitive user data.
Other sources
App Intents. A logic issue was addressed with improved restrictions.
— Apple
App Store. A permissions issue was addressed with additional restrictions.
— Apple
AppleEvents. An authorization issue was addressed with improved state management.
— Apple
AppleJPEG. The issue was addressed with improved bounds checks.
— Apple
AppleMobileFileIntegrity. A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions.
— Apple
Credit
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 26.2 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.7.4 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 14.8.4
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2025-46288
- CVE-2025-43539
- CVE-2025-43523
- CVE-2025-43519
- CVE-2025-43522
- CVE-2025-43521
- CVE-2025-46289
- CVE-2025-46297
- CVE-2025-43482
- CVE-2025-43517
- CVE-2025-46287
- CVE-2025-46283
- CVE-2024-7264
- CVE-2025-9086
- CVE-2025-43542
- CVE-2025-46281
- CVE-2025-43417
- CVE-2025-43518
- CVE-2025-43532
- CVE-2025-46278
- CVE-2025-46279
- CVE-2025-43524
- CVE-2025-43512
- CVE-2025-46285
- CVE-2025-46291
- CVE-2025-5918
- CVE-2025-43513
- CVE-2025-46276
- CVE-2025-43533
- CVE-2025-46300
- CVE-2025-46301
- CVE-2025-46302
- CVE-2025-46303
- CVE-2025-46304
- CVE-2025-46305
- CVE-2025-43509
- CVE-2025-43410
- CVE-2025-43428
- CVE-2025-43526
- CVE-2024-8906
- CVE-2025-46277
- CVE-2025-43538
- CVE-2025-46290
- CVE-2025-43514
- CVE-2025-43527
- CVE-2025-43416
- CVE-2025-43516
- CVE-2025-43530
- CVE-2025-46282
- CVE-2025-43541
- CVE-2025-43536
- CVE-2025-43535
- CVE-2025-46298
- CVE-2025-43501
- CVE-2025-43531
- CVE-2025-14174
- CVE-2025-43529
- CVE-2025-46299
- CVE-2025-43511
- CVE-2026-28995
- CVE-2026-20670
- CVE-2026-20624
- CVE-2026-20625
- CVE-2025-43403
- CVE-2026-20611
- CVE-2026-20609
- CVE-2026-20615
- CVE-2026-20617
- CVE-2026-20627
- CVE-2026-20623
- CVE-2026-20620
- CVE-2026-20634
- CVE-2026-20675
- CVE-2026-20671
- CVE-2026-20626
- CVE-2026-20630
- CVE-2025-59375
- CVE-2026-20667
- CVE-2026-20673
- CVE-2026-20677
- CVE-2026-20694
- CVE-2026-20696
- CVE-2025-46310
- CVE-2026-20614
- CVE-2026-20628
- CVE-2026-20653
- CVE-2026-20622
- CVE-2025-43473
- CVE-2026-20662
- CVE-2026-20680
- CVE-2026-20612
- CVE-2026-20641
- CVE-2026-20619
- CVE-2026-20606
- CVE-2026-20605
- CVE-2026-20621
- CVE-2025-43402
- CVE-2026-20602
- CVE-2026-20660
- CVE-2025-43338
- CVE-2026-20651
- CVE-2026-20616
Frequently Asked Questions
What is the severity of CVE-2025-46283?
CVE-2025-46283 has been classified as a medium severity vulnerability due to its potential impact on user permissions.
How do I fix CVE-2025-46283?
To mitigate CVE-2025-46283, update your macOS to version 26.2 or later.
Which software is affected by CVE-2025-46283?
CVE-2025-46283 affects macOS Tahoe up to version 26.2.
What type of issue does CVE-2025-46283 address?
CVE-2025-46283 addresses a permissions issue and bounds checks within Apple's software.
Is there a workaround for CVE-2025-46283?
There are no specific workarounds for CVE-2025-46283 other than updating to a fixed version.