CVE-2019-7290: Apple Shortcuts
Critical severity, CVSS 10.0. EPSS: 1% chance of exploitation in the next 30 days.
An access issue was addressed with additional sandbox restrictions. This issue is fixed in Shortcuts 2.1.3 for iOS. A sandboxed process may be able to circumvent sandbox restrictions.
Affected products
- Apple Shortcuts: before 2.1.3 (fixed in 2.1.3)
Published 2019-12-18. Last modified 2026-06-17.