6.2
/ 10
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Description
A permissions issue was addressed with additional restrictions. This issue is fixed in Xcode 26.4. An app may be able to read arbitrary files as root.
Basic Information
ID
CVE-2026-28889
Source
apple
Published
Mar 25, 2026 at 00:31
Modified
Apr 2, 2026 at 18:11
Affected Product
Vendor
Apple
Product
Xcode
Affected Versions
Apple Xcode 0