โ† All reports

The ClearanceKit software has vulnerabilities that allow processes with an empty Team ID and non-empty Signing ID to be incorrectly treated as Apple platform binaries.

CybersecurityTechnologyConflictOperating SystemsApr 21, 2026score 0.172 posts ยท 0 replies across 1 instances
The thread discusses two vulnerabilities in the ClearanceKit software, which intercepts file-system access events on macOS. These vulnerabilities allow processes with specific characteristics to be treated as Apple platform binaries or suspended, potentially leading to security risks.

Claims

The ClearanceKit software has vulnerabilities that allow processes with an empty Team ID and non-empty Signing ID to be incorrectly treated as Apple platform binaries.
Parent: CybersecurityEntity: ClearanceKitImpact: negativeDate: Apr 21, 2026Target: The ClearanceKit software's handling of process identification
The ClearanceKit software has a vulnerability that allows the opfilter system extension to be suspended with SIGSTOP or kill commands, potentially compromising its security functionality.
Parent: CybersecurityEntity: ClearanceKitImpact: negativeDate: Apr 21, 2026Target: The ClearanceKit software's security mechanisms

Source posts

@[email protected]
๐Ÿšจ EUVD-2026-24209 ๐Ÿ“Š Score: 8.4/10 (CVSS v3.1) ๐Ÿ“ฆ Product: clearancekit ๐Ÿข Vendor: craigjbass ๐Ÿ“… Updated: 2026-04-21 ๐Ÿ“ ClearanceKit intercepts file-system access events on macOS and enforces per-process access policies. Prior to 5.0.5, ClearanceKit incorrectly treats a process with an empty Team ID and a non-empty Signing ID as an Apple platform binary. This bug allo... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-24209 #cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 21, 2026
#euvd#cve#vulnerability#cybersecurity#infosec
@[email protected]
๐Ÿšจ EUVD-2026-24213 ๐Ÿ“Š Score: 8.2/10 (CVSS v3.1) ๐Ÿ“ฆ Product: clearancekit ๐Ÿข Vendor: craigjbass ๐Ÿ“… Updated: 2026-04-21 ๐Ÿ“ ClearanceKit intercepts file-system access events on macOS and enforces per-process access policies. Prior to 5.0.6, the opfilter Endpoint Security system extension (bundle ID uk.craigbass.clearancekit.opfilter) can be suspended with SIGSTOP or kill ... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-24213 #cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 21, 2026
#cybersecurity#infosec#euvd#cve#vulnerability