CVE-2026-64731

Summary

A path handling issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Tahoe 26.6. A malicious app may be able to break out of its sandbox.

Affected Software

VendorProductVersion RangeStatus
ApplemacOS0 < 15.7.8affected
ApplemacOS0 < 26.6affected

Weaknesses

  • A malicious app may be able to break out of its sandbox

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: yes
    • Technical Impact: total

References