Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-8533

Опубликовано: 07 авг. 2025
Источник: nvd
EPSS Низкий

Описание

A vulnerability was identified in the XPC services of Fantastical. The services failed to implement proper client authorization checks in its listener:shouldAcceptNewConnection method, unconditionally accepting requests from any local process. As a result, any local, unprivileged process could connect to the XPC service and access its methods.

This issue has been resolved in version 4.0.16.

EPSS

Процентиль: 18%
0.00059
Низкий

Дефекты

CWE-863

Связанные уязвимости

github
около 1 месяца назад

A vulnerability was identified in the XPC services of Fantastical. The services failed to implement proper client authorization checks in its listener:shouldAcceptNewConnection method, unconditionally accepting requests from any local process. As a result, any local, unprivileged process could connect to the XPC service and access its methods. This issue has been resolved in version 4.0.16.

EPSS

Процентиль: 18%
0.00059
Низкий

Дефекты

CWE-863