๐Ÿ” CVE Alert

CVE-2024-40594

LOW 2.3
CVSS Score
2.3
EPSS Score
0.0%
EPSS Percentile
0th

The OpenAI ChatGPT app before 2024-07-05 for macOS opts out of the sandbox, and stores conversations in cleartext in a location accessible to other apps.

Vendor n/a
Product n/a
Published Jul 6, 2024
Last Updated Nov 4, 2024
Stay Ahead of the Next One

Get instant alerts for n/a n/a

Be the first to know when new low vulnerabilities affecting n/a n/a are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AC:L/AV:L/A:N/C:L/I:N/PR:H/S:U/UI:N
Attack Vector
Local
Attack Complexity
Low
Privileges Required
High
User Interaction
None
Scope
Unchanged
Confidentiality
Low
Integrity
None
Availability
None

Affected Versions

n/a / n/a
n/a

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
arstechnica.com: https://arstechnica.com/ai/2024/07/chatgpts-much-heralded-mac-app-was-storing-conversations-as-plain-text/ theverge.com: https://www.theverge.com/2024/7/3/24191636/openai-chatgpt-mac-app-conversations-plain-text