Back

LOW

Mihomo Party Socket sysproxy.ts enableSysProxy temp file

Published Aug 26, 2025

Description

A vulnerability was detected in Mihomo Party up to 1.8.1 on macOS. Affected is the function enableSysProxy of the file src/main/sys/sysproxy.ts of the component Socket Handler. The manipulation results in creation of temporary file with insecure permissions. The attack requires a local approach. This attack is characterized by high complexity. The exploitability is told to be difficult. The exploit is now public and may be used.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (2)

References (5)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published Aug 26, 2025
Updated Sep 5, 2025
Reserved Aug 25, 2025
CISA Vulnrichment
Updated Aug 26, 2025
NVD
Status Deferred
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a