Junglewise Threat Intelligence

CVE-2026-28910: Apple macOS Tahoe improper permissions checking

CVE-2026-28910 · Severity: low · CVSS 3.3 · Published 2026-05-11

Technologies: Apple macOS. Vendors: Apple.

Executive brief

A vulnerability in macOS Tahoe could allow a malicious application installed on a computer to bypass security restrictions and access files it should not be able to see. This could lead to the exposure of sensitive personal or system data. Apple has released a software update to fix this issue by improving how the system checks file permissions.

Technical details

A vulnerability in macOS Tahoe (prior to version 26.4) stems from insufficient permissions checking when an application attempts to access files. A local attacker can exploit this by using a malicious application to bypass intended file system restrictions and read arbitrary files. The issue was addressed in macOS Tahoe 26.4 through improved logic for verifying process permissions. While the advisory does not specify the exact component beyond the general OS, the fix involves hardening the authorization checks used by the file system or sandbox.

Affected products

  • Apple macOS Tahoe Before 26.4

Timeline

  • 2026-03-24: patched: Fixed in macOS Tahoe 26.4
  • 2026-05-11: disclosed: CVE published by Apple

References

Related threats