Multiple Privilege Escalation Vulnerabilities in Arturia Software Center MacOS
The Arturia Software Center was found to be vulnerable to local privilege escalation via multiple vectors. The privileged helper utilized by Arturia Software Center via XPC does not perform client validation. When installing a plugin a world writeable uninstall shell script will be installed, which is executed by root when uninstalling. The vendor was unresponsive and no patch is available.
CVE-2026-24062, CVE-2026-24063


