Microsoft disclosed a flaw in the macOS Apple’s Transparency, Consent, and Control (TCC) framework that could allow it to bypass privacy settings and access user data.
The vulnerability, known as 'HM Surf,' removes TCC protection from Safari, allowing access to user data including browsing history, camera, microphone, and location without consent.
Apple addressed the vulnerability with the release of macOS Sequoia 15.
Third-party browsers are not affected by this vulnerability.