Loading HuntDB...

GHSA-63rm-c268-28fh

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

The Zscaler Updater process does not validate the digital signature of the installer before execution, allowing arbitrary code to be locally executed. This affects Zscaler Client Connector on MacOS <4.2.

Related CVEs

Key Information

GHSA ID
GHSA-63rm-c268-28fh
Published
August 6, 2024 6:30 PM
Last Modified
August 6, 2024 6:30 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: August 24, 2025 6:28 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.