Skip to content
Appaloosa Scout

Vulnerability · NVD

CVE-2025-43263

HIGH 7.1

The issue was addressed with improved checks. This issue is fixed in Xcode 26. An app may be able to read and write files outside of its sandbox.

Attack vector : Local No privileges required
Show raw CVSS vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
EPSS 0.20% exploit very unlikely percentile 9.7%

Tracked apps referencing this CVE

For each app: the affected range, the fixing version, and where the tracked app stands today.

  • Xcode macOS com.apple.dt.Xcode
    Affected <26.0 Fixed in 26.0 Latest tracked 26.6 patched
Vulnerable CPE configurations (1)
Vendor Product Versions
apple xcode
All platforms (wildcard)
<26.0
View on NVD ↗ Advisory · support.apple.com