CVE Explorer
CVE-2025-8597
MacVim's configuration on macOS, specifically the presence of entitlement "com.apple.security.get-task-allow", allows local attackers with unprivileged access (e.g. via a malicious application) to attach a debugger, read or modify the process memory, inject code in the application's context despite being signed with Hardened Runtime and bypass Transparency, Consent, and Control (TCC). Acquired resource access is limited to previously granted permissions by the user. Access to other resources bey
Known exploited
Not asserted
Disputed
No
Stale source
No
Conflicts
0
Affected products and versions
1 source assertion{"defaultStatus":"unaffected","platforms":["MacOS"],"product":"MacVim","repo":"https://github.com/macvim-dev/macvim","vendor":"MacVim","versions":[{"lessThan":"r181.2","status":"affected","version":"0","versionType":"custom"}]}
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:c206f7ecb22c47050d25a06c50754387bbf98d655801615999df4c83d3567fed · sha256:acee22f13020d2fc… · /containers/cna/affected/0
Provider-owned CVSS observations
1 source assertion{"metric":{"Automatable":"NOT_DEFINED","Recovery":"NOT_DEFINED","Safety":"NOT_DEFINED","attackComplexity":"LOW","attackRequirements":"NONE","attackVector":"LOCAL","baseScore":4.8,"baseSeverity":"MEDIUM","privilegesRequired":"LOW","providerUrgency":"NOT_DEFINED","subAvailabilityImpact":"NONE","subConfidentialityImpact":"NONE","subIntegrityImpact":"NONE","userInteraction":"NONE","valueDensity":"NOT_DEFINED","vectorString":"CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N","version":"4.0","vulnAvailabilityImpact":"NONE","vulnConfidentialityImpact":"LOW","vulnIntegrityImpact":"LOW",…
- cve_program_cvelist_v5cvssurn:baitaphish:normalized-source-record:v2:c206f7ecb22c47050d25a06c50754387bbf98d655801615999df4c83d3567fed · sha256:acee22f13020d2fc… · /containers/cna/metrics/0/cvssV4_0
CWE assertions
1 source assertion{"cweId":"CWE-497","description":"CWE-497 Exposure of Sensitive System Information to an Unauthorized Control Sphere","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:c206f7ecb22c47050d25a06c50754387bbf98d655801615999df4c83d3567fed · sha256:acee22f13020d2fc… · /containers/cna/problemTypes/0/descriptions/0
Source references
2 source assertions{"tags":["third-party-advisory"],"url":"https://cert.pl/en/posts/2025/08/tcc-bypass/"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:c206f7ecb22c47050d25a06c50754387bbf98d655801615999df4c83d3567fed · sha256:acee22f13020d2fc… · /containers/cna/references/0
{"tags":["issue-tracking"],"url":"https://github.com/macvim-dev/macvim/pull/1585"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:c206f7ecb22c47050d25a06c50754387bbf98d655801615999df4c83d3567fed · sha256:acee22f13020d2fc… · /containers/cna/references/1
Attribution and limitations
- CVE Program CVEList V5: Reproduce the MITRE copyright designation and CVE license in copies. Source →
Provider severity values are preserved separately. Baitaphish does not convert them into a risk rating, infer affected products, or treat EPSS as observed exploitation.