← Back

CVE-2022-22676

nvd nist
Published: May 26, 2022Modified: Jun 17, 2026

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
Exploitability: 1.8 / Impact: 3.6
Source: NVD

Description

An event handler validation issue in the XPC Services API was addressed by removing the service. This issue is fixed in macOS Monterey 12.2. An application may be able to delete files for which it does not have permission.

Affected (1)

Products: Apple: Macos
1 product
Macos
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 12.0.0 to 12.2

References (2)

Source: product-security@apple.com
Release NotesVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Release NotesVendor Advisory

Timeline

No history available yet.