{"id":"CVE-2025-31272","title":"The issue was addressed with improved checks","summary":"The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.4. An app may be able to bypass launch constraint protections and execute malicious code with elevated privileges.","severity":"high","cvss":7.8,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-269"],"vendor":"apple","product":"macos","affected":["macos < 15.4"],"patched":["macos 15.4"],"published":"2026-06-11","updated":"2026-09-30","sourceUpdated":"2026-09-30T21:10:00.190","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-31272","references":[{"url":"https://support.apple.com/en-us/122373","label":"product-security@apple.com"}],"tags":["nvd"],"epss":0.00115,"epssPercentile":0.01394,"ingestedAt":"2026-09-30T21:25:07.741Z","slug":"CVE-2025-31272","body":"## Overview\n\nThe issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.4. An app may be able to bypass launch constraint protections and execute malicious code with elevated privileges.\n\n## Affected\n\n- `macos < 15.4`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `macos 15.4`","depth":"twilight","depthScore":43,"depthScoreParts":{"impact":42.9,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}