CVE-2026-33632 describes a policy bypass vulnerability in ClearanceKit for macOS, affecting versions prior to 4.2.4. Due to unintercepted file operation events (ES_EVENT_TYPE_AUTH_EXCHANGEDATA and ES_EVENT_TYPE_AUTH_CLONE), local processes could circumvent per-process file access policies, leading to high impact on data confidentiality and integrity. Rated with a CVSS score of 8.4 (High), this flaw has a local attack vector and low attack complexity. Currently, there is no evidence of active exploitation or public exploit code, and community attention remains minimal. Users should upgrade to ClearanceKit v4.2.4 or later and reactivate the system extension to remediate this issue.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 4.2.4CPE matchmatch criteria | cpe:2.3:a:craigjbass:clearancekit:*:*:*:*:*:*:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:L/SC:L/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.