Security Advisory
CVE-2017-13801
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "Dictionary Widget" component. It allows attackers to read local files if pasted text is used in a search.