Authorization Vulnerability in macOS Products by Apple
CVE-2026-43672

7.1HIGH

Key Information:

Vendor

Apple

Status
Vendor
CVE Published:
27 July 2026

What is CVE-2026-43672?

An authorization vulnerability has been identified in Apple's macOS products that could allow a malicious application to circumvent established privacy preferences. This shortcoming is addressed through enhanced state management and requires users to ensure they are running the updated versions of the affected software. Users are advised to consult the support resources to learn more about safeguarding their systems against potential exploitation.

Affected Version(s)

macOS 0 < 14.8.8

macOS 0 < 15.7.8

macOS 0 < 26.6

References

CVSS V3.1

Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.