CVE-2025-30074: Parallels Desktop

High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.

Alludo Parallels Desktop before 19.4.2 and 20.x before 20.2.2 for macOS on Intel platforms allows privilege escalation to root via the VM creation routine.

Affected products

  • Parallels Parallels Desktop: from 19.3.1, before 19.4.2 (fixed in 19.4.2); from 20.0.0, before 20.2.2 (fixed in 20.2.2)

Published 2025-03-16. Last modified 2026-06-17.