Loading HuntDB...

GHSA-24hp-jpqm-m2j2

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

An issue existed within the path validation logic for symlinks. This issue was addressed with improved path sanitization. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8. A local attacker may be able to elevate their privileges.

Related CVEs

Key Information

GHSA ID
GHSA-24hp-jpqm-m2j2
Published
May 24, 2022 5:32 PM
Last Modified
January 9, 2023 6:30 PM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 15, 2025 6:32 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.