Homebrew 7.0.0 resolves a moderate-severity macOS LaunchServices sandbox escape that could let a malicious cask execute code outside the installation sandbox. The broader 6.0.x and 7.0.0 release line addresses eight advisories, including a high-severity issue in which unsigned cask-removal metadata could trigger commands through sudo. Homebrew warns that its controls cannot fully protect users from untrusted third-party casks, applications, or vendor .pkg installers that run with user privileges or request elevated access.
The release introduces brew vulns, which checks installed formulae, individual formulae, and Brewfile dependencies against OSV.dev while recognizing Homebrew-backported patches. Homebrew also published an OSV-format advisory database for formula-specific versions and revisions, expanded build-attestation verification, blocked home-directory access by default, and separated network-enabled downloads from offline installation steps; it additionally ships the native BrewUI interface and concurrent package operations for faster installs and upgrades.

See affected versions and whether adversaries are exploiting it.
6 events from the most recent confirmed update back to the earliest known activity.
Homebrew 7.0.0 fully released BrewUI, its native graphical interface for macOS 26 Tahoe and later, allowing users to browse and search packages and manage dependencies.
Homebrew 7.0.0 blocked home-directory access by default, separated network-enabled downloads from offline installation, and added build-attestation verification for supported third-party tap bottles. On Linux, it replaced Bubblewrap sandboxing with Landlock where supported.
The release introduced the `brew vulns` command, which queries OSV.dev for vulnerabilities affecting installed formulae, specified formulae, or Brewfile dependencies and accounts for Homebrew backports. Homebrew also published a CC0-licensed OSV-format advisory database for formula versions and revisions it distributes.
Homebrew released version 7.0.0, closing eight security advisories. It mitigated a moderate-severity macOS LaunchServices sandbox escape by restricting application launches, Mach services, and Unix socket connections.
Homebrew 6.0.12 fixed a high-severity issue in which unsigned cask removal metadata could execute commands with sudo, and a moderate-severity issue involving Git configuration that could cause programs to execute as root.
Homebrew fixed five low-severity advisories in versions 6.0.6 and 6.0.7, including issues involving secret-header exposure or SSRF through redirects, Git redirect restrictions, Subversion URL option injection, and patches writing outside staged source trees.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.