Threat intel / CVE tracker
CVE-2026-65400
Critical KEV · actively exploited PoC availableCVSS base score
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HAn authentication issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.9, macOS Sonoma 14.8.9, macOS Tahoe 26.6.1. An attacker on the network may be able to authenticate to Screen Sharing without valid credentials.
Vendor
apple
Product
macos
Affected
apple macos
Weakness
CWE-287 · Auth bypass
Published
Aug 6, 2026
Last modified
Aug 19, 2026
CVSS version
v3.1
Views
3
// References & exploits
https://support.apple.com/en-us/148170Release NotesVendor Advisoryhttps://support.apple.com/en-us/148171Release NotesVendor Advisoryhttps://support.apple.com/en-us/148172Release NotesVendor Advisoryhttp://seclists.org/fulldisclosure/2026/Aug/36PoCMailing Listhttp://seclists.org/fulldisclosure/2026/Aug/37PoCBroken Linkhttps://advisories.ncsc.nl/2026/ncsc-2026-0280.htmlThird Party Advisoryhttps://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-65400US Government Resource