You can find more info about this in this blog post.
The OpenAI ChatGPT for Mac app stored user conversations in plain text in a non-protected location, making them accessible to any running app or malware. After public disclosure, OpenAI released an update encrypting the conversations but did not implement sandboxing.
Demo app to show how easily any other app could access any ChatGPT conversation without any permission prompt before the update: