CRITICAL

CVE-2026-65381

Apple macOS 2026-09-14 CVSS v3.1
CVSS
10

Description

A validation issue existed in the entitlement verification. This issue was addressed with improved validation of the process entitlement. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. A malicious app may be able to break out of its sandbox.

Weakness (CWE)

CWE-862 Missing Authorization

EPSS Score

0.34%
Probability of exploitation in next 30 days
27.4th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE