CVE-2021-30657 is a logic issue affecting macOS Big Sur and Catalina that allows a malicious application to bypass Gatekeeper checks. This vulnerability has a CVSS score of 5.5 (Medium) and can be triggered by an unprivileged user interaction, leading to high integrity impact. Apple has confirmed active exploitation of this zero-day vulnerability, with a Metasploit module available for the Gatekeeper bypass. The high EPSS score, numerous community discussions, and extensive media coverage underscore its significance.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 11.3CPE match | cpe:2.3:a:apple:macos:*:*:*:*:*:*:*:* | ||
< 2021CPE match | cpe:2.3:a:apple:macos:*:*:*:*:*:*:*:* | ||
>= 10.15, <= 10.15.5CPE matchmatch criteria | cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:* | ||
10.15.6CPE matchmatch criteria | cpe:2.3:o:apple:mac_os_x:10.15.6:-:*:*:*:*:*:* | ||
10.15.6CPE matchmatch criteria | cpe:2.3:o:apple:mac_os_x:10.15.6:supplemental_update:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.