CVE-2020-3830: Apple Mac OS X

Low severity, CVSS 3.3. EPSS: 0.3% chance of exploitation in the next 30 days.

A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Catalina 10.15.3. A malicious application may be able to overwrite arbitrary files.

Affected products

  • Apple Mac OS X: before 10.15.3 (fixed in 10.15.3)

Published 2020-02-27. Last modified 2026-06-17.