CVE-2026-20630CWE-277
CVE-2026-20630
Medium · published February 12, 2026
What it is
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macOS Tahoe 26.3. An app may be able to access protected user data.
The record
Technical detail
- CVSS v3.1
- 5.5 · MEDIUM
- Vector
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
- CVSS v4.0
- Not supplied
- EPSS
- 0.00132 · 3.1th percentile
- Weakness
- CWE-277 · Insecure Inherited Permissions
- Published
- 2026-02-12T04:16Z
Affected products (1)
| Product | Versions | Fixed in |
|---|
| apple/macos | < 26.3 | 26.3 |
References (3)
EPSS history
Timeline