---
id: CVE-2025-46283
title: A logic issue was addressed with improved validation
summary: >-
  A logic issue was addressed with improved validation. This issue is fixed in
  macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macOS Tahoe 26.2. An app may be
  able to access sensitive user data.
severity: medium
cvss: 5.5
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N'
cwe:
  - CWE-200
vendor: apple
product: macos
affected:
  - macos < 26.2
patched:
  - macos 26.2
published: '2025-12-17'
updated: '2026-08-21'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-46283'
references:
  - url: 'https://support.apple.com/en-us/125886'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/126349'
    label: product-security@apple.com
  - url: 'https://support.apple.com/en-us/126350'
    label: product-security@apple.com
tags:
  - nvd
epss: 0.00187
epssPercentile: 0.0743
ingestedAt: '2026-08-21T03:06:24.301Z'
---

## Overview

A logic issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macOS Tahoe 26.2. An app may be able to access sensitive user data.

## Affected

- `macos < 26.2`

## Remediation

Upgrade past the affected range:

- `macos 26.2`
