CVE-2025-8700
Last modified
CVE-2025-8700 is a medium-severity vulnerability rated 4.8/10 on the CVSS scale. Invoice Ninja's configuration on macOS, specifically the presence of entitlement "com.apple.security.get-task-allow", allows local attackers with unprivileged access (e.g. via a malicious application) to attach a debugger, read or modify the process memory, inject code in the application's context despite being signed with Hardened Runtime and bypass Transparency, Consent, and Control (TCC). EPSS estimates a 0.13% chance of exploitation in the next 30 days.
Description
Invoice Ninja's configuration on macOS, specifically the presence of entitlement "com.apple.security.get-task-allow", allows local attackers with unprivileged access (e.g. via a malicious application) to attach a debugger, read or modify the process memory, inject code in the application's context despite being signed with Hardened Runtime and bypass Transparency, Consent, and Control (TCC). Acquired resource access is limited to previously granted permissions by the user. Access to other resources beyond granted permissions requires user interaction with a system prompt asking for permission. According to Apple documentation, when a non-root user runs an app with the debugging tool entitlement, the system presents an authorization dialog asking for a system administrator's credentials. Since there is no prompt when the target process has "get-task-allow" entitlement, the presence of this entitlement was decided to be treated as a vulnerability because it removes one step needed to perform an attack. This issue was fixed in version 5.0.175
Metrics
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2025-8700?
How severe is CVE-2025-8700?
How do I fix CVE-2025-8700?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-8693A post-authentication command injection vulnerability in the…8.8
- CVE-2025-8695Improper Neutralization of Input During Web Page Generation …5.4
- CVE-2025-8696If an unauthenticated user sends a large amount of data to t…7.5
- CVE-2025-8697A vulnerability was found in agentUniverse up to 0.0.18 and …6.3
- CVE-2025-8698A vulnerability was found in Open5GS up to 2.7.5. It has bee…3.3
- CVE-2025-8699Some "Stored Value" Unattended Payment Solutions of KioSoft …9.1
- CVE-2025-8701A vulnerability was found in Wanzhou WOES Intelligent Optimi…8.8
- CVE-2025-8702A vulnerability classified as critical has been found in Wan…8.8
- CVE-2025-8703A vulnerability classified as critical was found in Wanzhou …8.8
- CVE-2025-8704A vulnerability, which was classified as critical, has been …8.8
- CVE-2025-8705A vulnerability, which was classified as critical, was found…8.8
- CVE-2025-8706A vulnerability has been found in Wanzhou WOES Intelligent O…8.8
Are you affected by CVE-2025-8700?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
