CVE detail
CVE-2026-65400
An authentication issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.9, macOS Sonoma 14.8.9, macOS Tahoe 26.6.1. An attacker on the network may be able to authenticate to Screen Sharing without valid credentials.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 23.0 · diversity 20.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 9
- within the 30d window
- Peak daily
- 5
- highest bucket
Evidence
Source links by recency
9 source links · newest first
Linked URL: https://support.apple.com/en-us/148170 | Posted by lasagnafan | 2 points | 0 comments
communitynews.ycombinator.comAug 10, 2026, 6:16 PM- ⚡ Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP Supply-Chain Attacks, and Router BackdoorsThe Hacker News
sed, or already being poked at in the wild. Check the list, patch what you have, and hit the ones marked urgent first — CVE-2026-34348 , CVE-2026-18497 (stb TrueType), CVE-2026-63508, CVE-2026-56162, CVE-2026-65667, CVE-2026-50515, CVE-2026-62830, CVE-2026-59115, CVE-2026-50481 (Microsoft Windows), CVE-2026-64638 (WordPress), CVE-2026-64564 (Linux SCTP
newsthehackernews.comAug 10, 2026, 3:00 PM - Microsoft, Apple Release Fresh Security UpdatesSecurityWeek
ePoint, Teams, and other products, including critical-severity remote code execution (RCE) issues. Three of the issues, CVE-2026-63508, CVE-2026-56162, and CVE-2026-65667, have a maximum severity rating of 10/10. Described as missing authentication in Planetary Computer Pro, improper authentication in Azure SQL Database, and missing authorization in Te
newswww.securityweek.comAug 7, 2026, 9:09 AM updates from July, you should focus on getting the SharePoint patches out. The Microsoft Security Center announced that CVE-2026-50522, a remote code execution vulnerability, is now actively being exploited . Hackers can steal machine keys using this vulnerability and maintain access after the system is patched. With these keys, a remote attacker can e
newswww.helpnetsecurity.comAug 7, 2026, 6:00 AM- http://seclists.org/fulldisclosure/2026/Aug/37seclists.org
No excerpt available.
Exploitseclists.orgAug 6, 2026, 10:18 PM - http://seclists.org/fulldisclosure/2026/Aug/36seclists.org
No excerpt available.
Exploitseclists.orgAug 6, 2026, 10:18 PM - https://support.apple.com/en-us/148172support.apple.com
No excerpt available.
Vendor Advisorysupport.apple.comAug 6, 2026, 10:18 PM - https://support.apple.com/en-us/148171support.apple.com
No excerpt available.
Vendor Advisorysupport.apple.comAug 6, 2026, 10:18 PM - https://support.apple.com/en-us/148170support.apple.com
No excerpt available.
Vendor Advisorysupport.apple.comAug 6, 2026, 10:18 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-64745CVSS 2.4 · Low
This issue was addressed with additional restrictions on the lock screen. This issue is fixed in macOS Sequoia 15.7.8, macOS Tahoe 26.6. A person with physical access to a locked…
- CVE-2026-43766CVSS 4.6 · Medium
An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An attacker with physical…
- CVE-2022-48575CVSS 3.5 · Low
A person with access to a Mac may be able to bypass Login Window. A consistency issue was addressed with improved state handling. This issue is fixed in macOS Monterey 12.4.
- CVE-2025-43281CVSS 7.8 · High
The issue was addressed with improved authentication. This issue is fixed in macOS Sequoia 15.6. A local attacker may be able to elevate their privileges.
- CVE-2025-31271CVSS 7.5 · High
This issue was addressed through improved state management. This issue is fixed in macOS Tahoe 26. Incoming FaceTime calls can appear or be accepted on a locked macOS device, even…
- CVE-2025-9815CVSS 7.1 · High
A weakness has been identified in alaneuler batteryKid up to 2.1 on macOS. The affected element is an unknown function of the file PrivilegeHelper/PrivilegeHelper.swift of the com…