CVE-2026-65400 – macOS

CVSS 9.8 CRITICAL High or Medium – Important Deployment

“Screen Sharing access should never bypass valid credentials.”

Apple fixed an authentication flaw in macOS Screen Sharing that could allow an attacker on the network to authenticate without valid credentials. The issue is addressed through improved state management in macOS Sequoia 15.7.9, macOS Sonoma 14.8.9, and macOS Tahoe 26.6.1. The CVSS score is 7.1, which is High severity.

Key Details

Affected Product
Apple Macos
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
CWE Classification
CWE-287
Patch this CVE on all your endpoints in under 5 minutes. First 200 endpoints are free forever, scale as needed.