CVE-2023-42935: Apple macOS
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
An authentication issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.6.4. A local attacker may be able to view the previous logged in user’s desktop from the fast user switching screen.
Affected products
- Apple macOS: from 13.0, before 13.6.4 (fixed in 13.6.4); from 14.0, before 14.1 (fixed in 14.1)
Published 2024-01-23. Last modified 2026-06-17.