Cyber Resilience

CVE-2024-23298

Apple Xcode ≤ 15.3

Published
15 March 2024
Modified
17 June 2026
Patch / advisory
CVSS Score v3.1 5.5
Click a component to see what it means
Raw vectorCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
EPSS Score 0.0053 42th percentile
Risk Priority 49 floored blend · peak EPSS

CVSS and EPSS are reproduced from their sources (NVD, FIRST EPSS). Risk Priority is our own derived reading, not an NVD score.

Summary

CVE-2024-23298 is a medium-severity an unspecified weakness vulnerability in Apple Xcode. Its CVSS base score is 5.5 (Medium).

Operationally, ranked at the 42th percentile by exploit likelihood (below the median); it is not currently listed in the CISA KEV catalog.

EU & UK References

Vulnerability Data

A logic issue was addressed with improved state management. This issue is fixed in Xcode 15.3. An app may bypass Gatekeeper checks.

CWE(s)

Related Threats

CVEs Like This One

CVE-2024-44162Same product: Apple Xcode
CVE-2025-31186Same product: Apple Xcode
CVE-2025-43370Same product: Apple Xcode
CVE-2023-27967Same product: Apple Xcode
CVE-2023-40435Same product: Apple Xcode
CVE-2023-27945Same product: Apple Xcode
CVE-2025-43263Same product: Apple Xcode
CVE-2024-44228Same product: Apple Xcode
CVE-2024-40862Same product: Apple Xcode
CVE-2026-28890Same product: Apple Xcode

Affected Assets

apple
xcode
≤ 15.3

Mitigating Controls

No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.

References