A vulnerability has been found in AppHouseKitchen AlDente Charge Limiter up to 1.29 on macOS and classified as critical. This vulnerability affects the function
shouldAcceptNewConnection
of the file com.apphousekitchen.aldente-pro.helper of the component XPC Service. The manipulation leads to improper authorization.
This vulnerability was named CVE-2025-1078. It is possible to launch the attack on the local host. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure and acted very professional.
It is recommended to upgrade the affected component.
The vendor was contacted early about this disclosure and acted very professional.