← All CVEs

CVE-2026-65381

critical · 10

A validation issue existed in the entitlement verification. This issue was addressed with improved validation of the process entitlement. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. A malicious app may be able to break out of its sandbox.

10
CVSS
0.5%
EPSS (exploit prob.)
43rd
EPSS percentile
2026-09-14
Published

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Weaknesses

CWE-862

Affected products

VendorProductAffected versions
applemacos>= 15.0, < 15.8
applemacos>= 26.0, < 26.7

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2026-65381