An issue was discovered in AdGuard plugin before 1.11.22 for Safari on MacOS. AdGaurd verbosely logged each url that Safari accessed when the plugin was active. These logs went into the MacOS general logs for any unsandboxed process to read. This may be disabled in version 1.11.22.
References
| Link | Resource |
|---|---|
| https://adguard.com/en/adguard-safari/overview.html | Product |
| https://github.com/AdguardTeam/AdGuardForSafari | Product |
| https://www.mcrich23.com/post/adguard-messed-up-their-logging | Third Party Advisory |
Configurations
History
No history.
Information
Published : 2025-07-17 18:15
Updated : 2025-10-09 19:13
NVD link : CVE-2025-51497
Mitre link : CVE-2025-51497
CVE.ORG link : CVE-2025-51497
JSON object : View
Products Affected
adguard
- adguard_for_safari
CWE
CWE-532
Insertion of Sensitive Information into Log File
