CVE-2024-40834: Apple macOS
Medium severity, CVSS 4.4. EPSS: 0.3% chance of exploitation in the next 30 days.
This issue was addressed by adding an additional prompt for user consent. This issue is fixed in macOS Monterey 12.7.6, macOS Sonoma 14.6, macOS Ventura 13.6.8. A shortcut may be able to bypass sensitive Shortcuts app settings.
Affected products
- Apple macOS: up to and including 12.7.6; from 13.0, up to and including 13.6.8; from 14.0, up to and including 14.6
Published 2024-07-29. Last modified 2026-06-17.