CVE-2025-13326 - CERT CVE
ID CVE-2025-13326
Sažetak Mattermost Desktop App versions <6.0.0 fail to enable the Hardened Runtime on the Mattermost Desktop App when packaged for Mac App Store which allows an attacker to inherit TCC permissions via copying the binary to a tmp folder.
Reference
CVSS
Base: 3.9
Impact: 2.5
Exploitability:1.3
Pristup
VektorSloženostAutentikacija
LOCAL LOW LOW
Impact
PovjerljivostCjelovitostDostupnost
LOW LOW NONE
CVSS vektor CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N
Zadnje važnije ažuriranje 18-12-2025 - 19:47
Objavljeno 17-12-2025 - 19:16