CVE-2026-65400
KEVCRITICAL 9.8EPSS 9.9%
An authentication issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.9, macOS Sonoma 14.8.9, macOS Tahoe 26.6.1. An attacker on the network may be able to authenticate to Screen Sharing without valid credentials.
- CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS
- 9.90% chance of exploitation in the next 30 days, 95th percentile
- CISA KEV
- added 2026-08-18
- Published
- 2026-08-06
- Updated
- 2026-08-19
Proof-of-concept exploits (3)
- HORKimhab/CVE-2026-654003★ · 2026-08-18
- panchocosil/CVE-2026-65400-poc3★ · 2026-08-22
- acheong08/CVE-2026-654002★ · 2026-08-22