9To5Mac Critical Screen Sharing Vulnerability in macOS Allows Unauthorized Access
Article Content
- •CVE-2026-65400 allows unauthorized access to Screen Sharing on macOS.
- •Affected versions include macOS Tahoe, Sequoia, and Sonoma, patched on August 6, 2026.
- •Users are strongly advised to update their systems to prevent potential exploitation.
A serious vulnerability in Apple's Screen Sharing feature was disclosed, affecting macOS versions Tahoe, Sequoia, and Sonoma. The flaw, tracked as CVE-2026-65400, allows attackers on the same network to authenticate without valid credentials, potentially enabling them to view and control the user's screen. This vulnerability was discovered by Alfred Persoli via the Bynario Atlas platform and was patched on August 6, 2026. The issue stems from improper state management in the authentication process, leading to unauthorized access. Users are urged to update their systems immediately to mitigate the risk. Apple has not reported any known exploitation of this vulnerability in the wild. The updates are available for macOS Tahoe 26.6.1, Sequoia 15.7.9, and Sonoma 14.8.9. The vulnerability highlights the risks associated with enabling remote access features without proper security measures.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (79)
Following this threat?
Track Apple and CVE-2026-31532 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…