PatchSiren

PatchSiren cyber security CVE debrief

CVE-2025-43339 Apple CVE debrief

CVE-2025-43339 is a MEDIUM-severity access issue vulnerability addressed by Apple in macOS Tahoe 26.1. A malicious app may be able to access sensitive user data. The issue was publicly disclosed on  [**cve-org**](https://www.cve.org/CVERecord?id=CVE-2025-43339)  and further details can be found on  [**nvd**](https://nvd.nist.gov/vuln/detail/CVE-2025-43339).

Vendor
Apple
Product
macOS
CVSS
MEDIUM 5.5
CISA KEV
Not listed in stored evidence
Original CVE published
2026-06-11
Original CVE updated
2026-06-12
Advisory published
2026-06-11
Advisory updated
2026-06-12

Who should care

Users of macOS Tahoe 26.1 and administrators of affected systems should apply the update to prevent potential exploitation.

Technical summary

The vulnerability, with a CVSS score of 5.5, involves an access issue that was addressed with additional sandbox restrictions. This issue is fixed in macOS Tahoe 26.1.

Defensive priority

MEDIUM

Recommended defensive actions

  • Apply the update to macOS Tahoe 26.1 as soon as possible.
  • Ensure that all users of affected systems are informed and updated.

Evidence notes

The CVE was published on 2026-06-11T19:16:33.930Z and modified on 2026-06-12T12:37:08.883Z. The vulnerability has been analyzed and details can be found in the  [**source-item**](https://services.nvd.nist.gov/rest/json/cves/2.0?lastModStartDate=2026-06-09T12%3A30%3A41.000Z&lastModEndDate=2026-06-13T17%3A00%3A54.000Z).

Official resources

Publicly disclosed