SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-64738

CRITICAL · CVSS 9.8 EPSS 0.57%

Source: NVD + CISA KEV + EPSS · Published 2026-07-27 · Last synced 2026-08-26

CyberRota Analysis

AI-Generated

A critical permissions vulnerability in macOS could allow a malicious application to escape its sandbox, potentially leading to unauthorized access to system resources and data. Organizations using affected versions of macOS should prioritize applying the updates provided in Sequoia 15.7.8, Sonoma 14.8.8, and Tahoe 26.6 to mitigate the risk of exploitation. This issue is particularly relevant for environments where sensitive data is handled or where strict application isolation is required.

CVE
CVE-2026-64738
Severity
CRITICAL
CVSS
9.8
EPSS
0.57%

Original NVD Description

A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A malicious app may be able to break out of its sandbox.

Related CVEs

Other vulnerabilities affecting the same vendor(s)