E
Microsoft uncovered a security flaw affecting macOS’s Spotlight.
The vulnerability (CVE-2025-31199), which Apple patched in a March 31st update, could give bad actors access to files inside a device’s Downloads folder and data cached by Apple Intelligence. That includes geolocation data, media metadata, and facial recognition info, according to a report from Microsoft Threat Intelligence.
Security researchers discovered the flaw after using Spotlight plugins to bypass a security feature made to prevent third-party services from gaining access to user data.
Follow topics and authors from this story to see more like this in your personalized homepage feed and to receive email updates.
Loading comments
Getting the conversation ready...
Most Popular
Most Popular
- Samsung’s wider Z Fold 8 feels just right
- The new Halo remake is a reminder of what Xbox used to be
- Google hit with $1 billion fine for breaking EU antitrust rules
- The right-wing boomers protesting data centers have a lot in common with the left
- The sci-fi movie that imagines AI isn’t so dystopian after all











