Skip to main content

CVE-2024-41145

7.1
HIGHCVSS v3.1 Base Score
0.08%
LOW RiskEPSS (25th percentile)

A library injection vulnerability exists in the WebView.app helper app of Microsoft Teams (work or school) 24046.2813.2770.1094 for macOS. A specially crafted library can leverage Teams's access privileges, leading to a permission bypass. A malicious application could inject a library and start the program to trigger this vulnerability and then make use of the vulnerable application's permissions.

Published: 12/18/2024
Modified: 8/26/2025
Back to CVE Lookup

Vulnerability Summary

CVSS v3 Score

7.1HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

EPSS Score (Exploitation Probability)

0.08%LOW Exploitation Risk
25th percentile

This vulnerability has a 0.08% probability of being exploited in the next 30 days, ranking higher than 25% of all scored CVEs.

Related Vulnerabilities