CVE-2020-27896: Apple Mac OS X

Medium severity, CVSS 5.5. EPSS: 1.5% chance of exploitation in the next 30 days.

A path handling issue was addressed with improved validation. This issue is fixed in macOS Big Sur 11.0.1. A remote attacker may be able to modify the file system.

Affected products

  • Apple Mac OS X: from 10.14.0, before 10.14.6 (fixed in 10.14.6); from 10.15.0, before 10.15.7 (fixed in 10.15.7); version 10.14.6 only; version 10.15.7 only
  • Apple macOS: from 11.0, before 11.0.1 (fixed in 11.0.1)

Published 2020-12-08. Last modified 2026-06-17.