CVE-2025-31248

Source
https://cve.org/CVERecord?id=CVE-2025-31248
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-31248.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-31248
Published
2025-11-21T22:16:19.553Z
Modified
2026-03-15T22:51:04.939603Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
Summary
[none]
Details

A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in macOS Ventura 13.7.3, macOS Sequoia 15.5, macOS Sonoma 14.7.3. An app may be able to access sensitive user data.

References

Affected packages

Git /

Affected ranges

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-31248.json"
unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "fixed": "13.7.3"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "14.0"
            },
            {
                "fixed": "14.7.3"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "15.0"
            },
            {
                "fixed": "15.5"
            }
        ]
    }
]