Security Advisory
CVE-2025-69604
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
An issue in Shirt Pocket's SuperDuper! 3.11 and earlier allow a local attacker to modify the default task template to install an arbitrary package that can run shell scripts with root privileges and Full Disk Access, thus bypassing macOS privacy controls.