CVE-2024-42219 for 1Password 8 for Mac

1Password

1 min read Original article ↗

Calculated CVSS 3.1 Score - 6.3 (Medium)

AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N

This issue requires local access to the user’s computer with standard or low user privileges to execute the attack. The attack is complex for an attacker to accomplish, but does not require user interaction if the 1Password desktop app is in an unlocked state. A successful exploitation of the attack will not allow an attacker to directly gain access to other resources on the computer. The confidentiality and integrity impact are high, but availability impact is none.