Skip to main content

CVE detail

CVE-2026-65400

An authentication issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.9, macOS Sonoma 14.8.9, macOS Tahoe 26.6.1. An attacker on the network may be able to authenticate to Screen Sharing without valid credentials.

CVSS 9.8 · CriticalBuzz score 43.0

Buzz score

Why this CVE is surfacing

Buzz score total 43.0

This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.

Buzz score components · mention 23.0 · diversity 20.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Mention score
23.0
9 evidence mentions in the snapshot
Diversity score
20.0
6 sources across 4 categories
KEV score
0.0
No KEV entry observed
OTX score
0.0
0 OTX pulses
PoC score
0.0
0 repos · best confidence N/A
Best PoC traction
0
Maximum stars on a matched PoC repo

Why it matters now

Mention timeline

Total mentions
9
within the 30d window
Peak daily
5
highest bucket

Evidence

Source links by recency

Newest mentions first
9 source links · newest first
  • Linked URL: https://support.apple.com/en-us/148170 | Posted by lasagnafan | 2 points | 0 comments

    communitynews.ycombinator.comAug 10, 2026, 6:16 PM
  • sed, or already being poked at in the wild. Check the list, patch what you have, and hit the ones marked urgent first — CVE-2026-34348 , CVE-2026-18497 (stb TrueType), CVE-2026-63508, CVE-2026-56162, CVE-2026-65667, CVE-2026-50515, CVE-2026-62830, CVE-2026-59115, CVE-2026-50481 (Microsoft Windows), CVE-2026-64638 (WordPress), CVE-2026-64564 (Linux SCTP

    newsthehackernews.comAug 10, 2026, 3:00 PM
  • ePoint, Teams, and other products, including critical-severity remote code execution (RCE) issues. Three of the issues, CVE-2026-63508, CVE-2026-56162, and CVE-2026-65667, have a maximum severity rating of 10/10. Described as missing authentication in Planetary Computer Pro, improper authentication in Azure SQL Database, and missing authorization in Te

    newswww.securityweek.comAug 7, 2026, 9:09 AM
  • updates from July, you should focus on getting the SharePoint patches out. The Microsoft Security Center announced that CVE-2026-50522, a remote code execution vulnerability, is now actively being exploited . Hackers can steal machine keys using this vulnerability and maintain access after the system is patched. With these keys, a remote attacker can e

    newswww.helpnetsecurity.comAug 7, 2026, 6:00 AM
  • No excerpt available.

    Exploitseclists.orgAug 6, 2026, 10:18 PM
  • No excerpt available.

    Exploitseclists.orgAug 6, 2026, 10:18 PM
  • https://support.apple.com/en-us/148172support.apple.com

    No excerpt available.

    Vendor Advisorysupport.apple.comAug 6, 2026, 10:18 PM
  • https://support.apple.com/en-us/148171support.apple.com

    No excerpt available.

    Vendor Advisorysupport.apple.comAug 6, 2026, 10:18 PM
  • https://support.apple.com/en-us/148170support.apple.com

    No excerpt available.

    Vendor Advisorysupport.apple.comAug 6, 2026, 10:18 PM

Exploit code

Public exploit repository references

Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.

0 repository references · best confidence N/A · max 0 stars
No public PoC repositories have been matched yet.

Related records

Similar CVEs

6 related CVEs with shared weakness or product evidence
  • CVE-2026-64745

    This issue was addressed with additional restrictions on the lock screen. This issue is fixed in macOS Sequoia 15.7.8, macOS Tahoe 26.6. A person with physical access to a locked…

    CVSS 2.4 · Low
    3 mentions
  • CVE-2026-43766

    An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An attacker with physical…

    CVSS 4.6 · Medium
    4 mentions
  • CVE-2022-48575

    A person with access to a Mac may be able to bypass Login Window. A consistency issue was addressed with improved state handling. This issue is fixed in macOS Monterey 12.4.

    CVSS 3.5 · Low
    2 mentions
  • CVE-2025-43281

    The issue was addressed with improved authentication. This issue is fixed in macOS Sequoia 15.6. A local attacker may be able to elevate their privileges.

    CVSS 7.8 · High
    1 mention
  • CVE-2025-31271

    This issue was addressed through improved state management. This issue is fixed in macOS Tahoe 26. Incoming FaceTime calls can appear or be accepted on a locked macOS device, even…

    CVSS 7.5 · High
    2 mentions
  • CVE-2025-9815

    A weakness has been identified in alaneuler batteryKid up to 2.1 on macOS. The affected element is an unknown function of the file PrivilegeHelper/PrivilegeHelper.swift of the com…

    CVSS 7.1 · High