CVE-2026-43750
critical · 9.8A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to execute arbitrary code out of its sandbox or with certain elevated privileges.
9.8
CVSS
0.7%
EPSS (exploit prob.)
51st
EPSS percentile
2026-07-27
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-120
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| apple | macos | >= 14.0, < 14.8.8 |
| apple | macos | >= 15.0, < 15.7.8 |
| apple | macos | >= 26.0, < 26.6 |
Check a specific version with /api/v1/cve/match.
References
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2026-43750