CVE-2022-22644: Apple macOS
Medium severity, CVSS 5.5. EPSS: 0.7% chance of exploitation in the next 30 days.
A privacy issue existed in the handling of Contact cards. This was addressed with improved state management. This issue is fixed in macOS Monterey 12.3. A malicious application may be able to access information about a user's contacts.
Affected products
- Apple macOS: from 12.0, before 12.3 (fixed in 12.3)
Published 2022-03-18. Last modified 2026-06-17.