CVE-2019-8772: Apple Mac OS X
High severity, CVSS 7.5. EPSS: 1.2% chance of exploitation in the next 30 days.
An issue existed in the handling of links in encrypted PDFs. This issue was addressed by adding a confirmation prompt. This issue is fixed in macOS Catalina 10.15. An attacker may be able to exfiltrate the contents of an encrypted PDF.
Affected products
- Apple Mac OS X: before 10.15 (fixed in 10.15)
Published 2019-12-18. Last modified 2026-06-17.