← Back

Superduper!

superduper!

Vendor: Shirt Pocket • 4 CVEs

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Shirt Pocket
1Superduper!
Jul 5, 2026
Jan 29, 2026
N/A· v4
7.8 HIGH· v3
N/A· v2
An issue in Shirt Pocket's SuperDuper! 3.11 and earlier allow a local attacker to modify the default task template to install an arbitrary package that can run shell scripts with root privileges and Full Disk Access, thu...Show more
An issue in Shirt Pocket's SuperDuper! 3.11 and earlier allow a local attacker to modify the default task template to install an arbitrary package that can run shell scripts with root privileges and Full Disk Access, thus bypassing macOS privacy controls.Show less
1Shirt Pocket
1Superduper!
Jul 5, 2026
Dec 1, 2025
N/A· v4
7.8 HIGH· v3
N/A· v2
An issue in Shirt Pocket's SuperDuper! 3.10 and earlier allow a local attacker to modify the default task template to execute an arbitrary preflight script with root privileges and Full Disk Access, thus bypassing macOS...Show more
An issue in Shirt Pocket's SuperDuper! 3.10 and earlier allow a local attacker to modify the default task template to execute an arbitrary preflight script with root privileges and Full Disk Access, thus bypassing macOS privacy controls.Show less
1Shirt Pocket
1Superduper!
Jul 5, 2026
Dec 1, 2025
N/A· v4
7.8 HIGH· v3
N/A· v2
An issue in Shirt Pocket SuperDuper! V.3.10 and before allows a local attacker to execute arbitrary code via the software update mechanism
1Shirt Pocket
1Superduper!
Jul 5, 2026
Dec 1, 2025
N/A· v4
8.1 HIGH· v3
N/A· v2
Incorrect access control in the SDAgent component of Shirt Pocket SuperDuper! v3.10 allows attackers to escalate privileges to root due to the improper use of a setuid binary.