Executive brief
A vulnerability in macOS allows an app to gain root privileges on affected systems. This could allow malicious software to take complete control of a computer, accessing all user data, system files, and sensitive information without user awareness or consent.
Technical details
The advisory references CVE-2026-65362 affecting macOS Golden Gate, Sequoia, and Tahoe, with the capability to enable an app to gain root privileges. The root cause and specific vulnerable component are not detailed in the advisory excerpt provided. The attack requires a malicious app to be installed and executed on the target system. Patches are available in macOS Golden Gate 27, macOS Sequoia 15.8, and macOS Tahoe 26.7, released on September 14, 2026.
Affected products
- Apple macOS Golden Gate before 27
- Apple macOS Sequoia before 15.8
- Apple macOS Tahoe before 26.7
Timeline
- 2026-09-14: patched: macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7 released
- 2026-09-14: disclosed