Logic Issue in macOS Golden Gate Allows App to Bypass Security Checks
CVE-2026-86909

4.4MEDIUM

Key Information:

Vendor

Apple

Status
Vendor
CVE Published:
14 September 2026

What is CVE-2026-86909?

A significant logic issue has been identified within macOS Golden Gate, potentially enabling malicious apps to bypass crucial Gatekeeper security checks. Mitigations were implemented to enhance state management, with the issue addressed in macOS Golden Gate version 27. Users are encouraged to update to this version to ensure that their systems are protected against potential exploitation.

Affected Version(s)

macOS 0 < 27

References

CVSS V3.1

Score:
4.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.