CVE-2018-4050: Gog Galaxy

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

An exploitable local privilege escalation vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOS. An attacker can globally adjust folder permissions leading to execution of arbitrary code with elevated privileges.

Affected products

  • Gog Galaxy: version 1.2.47 only

Published 2019-04-01. Last modified 2026-06-17.