Executive brief
A security vulnerability in macOS could allow a malicious application to gain full administrative (root) control over a computer. This would give the attacker complete access to all files, settings, and system functions. Users should update to the latest versions of macOS Sequoia, Sonoma, or Tahoe to resolve this issue.
Technical details
A permissions vulnerability exists in macOS that allows for local privilege escalation. A malicious application, running with standard user permissions, can exploit this flaw to gain root privileges. The root cause is a permissions issue that Apple addressed by implementing additional restrictions within the operating system. The vulnerability affects macOS Sequoia versions prior to 15.7.8, macOS Sonoma versions prior to 14.8.8, and macOS Tahoe versions prior to 26.6. Exploitation requires the execution of a malicious app on the target system.
Affected products
- Apple macOS Sequoia Before 15.7.8
- Apple macOS Sonoma Before 14.8.8
- Apple macOS Tahoe Before 26.6
Timeline
- 2026-07-27: disclosed
- 2026-07-27: advisory
- 2026-07-27: patched