CVE-2026-43766

EUVD-2026-49542
An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An attacker with physical access to a locked device may be able to view sensitive user information.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.6 MEDIUM
PHYSICAL
LOW
NONE
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 13.91%
Affected Products (NVD)
VendorProductVersion
applemacos
14.0 ≤
𝑥
< 14.8.8
applemacos
15.0 ≤
𝑥
< 15.7.8
applemacos
26.0 ≤
𝑥
< 26.6
𝑥
= Vulnerable software versions