vulnerability
OS X update for LaunchServices (CVE-2025-24148)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 5 | (AV:L/AC:M/Au:N/C:N/I:C/A:N) | Apr 1, 2025 | Apr 1, 2025 | Dec 29, 2025 |
Severity
5
CVSS
(AV:L/AC:M/Au:N/C:N/I:C/A:N)
Published
Apr 1, 2025
Added
Apr 1, 2025
Modified
Dec 29, 2025
Description
This issue was addressed with improved handling of executable types. This issue is fixed in macOS Ventura 13.7.5, macOS Sequoia 15.4, macOS Sonoma 14.7.5. A malicious JAR file may bypass Gatekeeper checks.
Solutions
apple-osx-upgrade-13_7_5apple-osx-upgrade-14_7_5apple-osx-upgrade-15_4
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.