CVE-2026-18367
critical · 9.3A privilege escalation vulnerability allows local users to execute arbitrary code as root via Sophos Endpoint for macOS older than version 2026.1.1 and Sophos Home for macOS older than version 10.11.6.
9.3
CVSS
0.1%
EPSS (exploit prob.)
3rd
EPSS percentile
2026-08-06
Published
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Weaknesses
CWE-285
References
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2026-18367