CVE Tools
Back to feed
Research ExifTool (macOS) rce ExifTool (Kaspersky GReAT)

How an image could compromise your Mac: understanding an ExifTool vulnerability (CVE-2026-3102)

Kaspersky Securelist·By Lucas Tay··9 min read

Introduction

ExifTool is a widely adopted utility for reading and writing metadata in image, PDF, audio, and video files. It is available both as a standalone command-line application and as a library that can be embedded in other software. In this article, we break down CVE-2026-3102">CVE-2026-3102, an ExifTool vulnerability discovered by Kaspersky’s Global Research and Analysis Team (GReAT) in February 2026 and patched by the developers within the same month. Affecting macOS systems with ExifTool version 13.49 and earlier, this flaw could let an attacker run arbitrary commands by hiding instructions inside an image file’s metadata.…

Continue reading on Kaspersky Securelist