WhisperX tag archive

#AppleScript

This page collects WhisperX intelligence signals tagged #AppleScript. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (2)

The Lab · 2026-03-28 20:26:53 · GitHub Issues

1. GitHub Project Exposes Critical Shell Injection Flaw in AppleScript Rename Function

A critical security vulnerability has been exposed in a GitHub project's file renaming function, where the use of AppleScript creates a direct path for shell injection attacks. The flaw allows attackers to inject arbitrary AppleScript commands by manipulating filenames containing shell metacharacters, as the project's ...

The Lab · 2026-03-30 20:27:30 · GitHub Issues

2. Swift Mail & Notes Clients Contain Medium-Severity AppleScript Escaping Flaw, Audit Reveals

A recent external security audit has flagged a medium-severity vulnerability in the Swift-based mail and notes clients, stemming from a manual AppleScript escaping function. The flaw, located in the `ScriptRunner.swift` files for both `swift-mail` and `swift-notes`, involves the `escapeAppleScript` function used to san...