Description
A path handling issue was addressed with improved validation. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to gain elevated privileges.
Published: 2026-09-14
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Privilege Escalation
Action: Apply Patch
AI Analysis

Impact

A path handling flaw in paths in a way that the operating system interprets as higher privilege access. The weakness is a CWE‑22 (Path Traversal) defect that permits an application to override intended permissions, enabling the process to perform privileged operations, modify system files, or access restricted data. This can result in the attacker gaining full administrative control over the affected machine.

Affected Systems

Apple macOS versions Golden Gate 27, Sequoia 15.8, and Tahoe 26.7 are affected. All other releases are not impacted according to the vendor advisory.

Risk and Exploitability

The CVSS score of 7.8 categorizes the vulnerability as High. The EPSS score is < 1 % and the flaw is not listed in CISA KEV, indicating low exploitation probability. The attack likely requires a local, authenticated user to run a crafted application that leverages the path handling defect, after which the application can elevate itself to higher privileges. A remote exploit would need to deliver such a malicious application, for example via phishing or a malicious download, making local execution the primary vector.

Generated by OpenCVE AI on September 20, 2026 at 20:46 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Install macOS Golden Gate 27 or newer, Sequoia 15.8 or newer, and Tahoe 26.7 or newer to apply the path‑validation fix.
  • Restrict execution to applications signed by trusted developers and enabled by Gatekeeper so that only trusted code can run on the system.
  • Enable and enforce System Integrity Protection (SIP) so that even if an application attempts to obtain elevated rights, the integrity policy blocks unauthorized escalation.

Generated by OpenCVE AI on September 20, 2026 at 20:46 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 20 Sep 2026 21:15:00 +0000

Type Values Removed Values Added
Title Path Handling Flaw Enabling Privilege Escalation in macOS

Wed, 16 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

Wed, 16 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 16 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-22
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}


Wed, 16 Sep 2026 12:15:00 +0000

Type Values Removed Values Added
Title Path Handling Vulnerability Allowing Privilege Escalation in macOS
Weaknesses CWE-20
CWE-269

Tue, 15 Sep 2026 11:45:00 +0000

Type Values Removed Values Added
Title Path Handling Vulnerability Allowing Privilege Escalation in macOS
Weaknesses CWE-20
CWE-269

Tue, 15 Sep 2026 02:00:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Vendors & Products Apple
Apple macos

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description A path handling issue was addressed with improved validation. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to gain elevated privileges.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-09-16T14:54:51.268Z

Reserved: 2026-07-20T18:11:03.398Z

Link: CVE-2026-64790

cve-icon Vulnrichment

Updated: 2026-09-16T14:54:38.340Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-14T21:17:16.727

Modified: 2026-09-16T17:21:43.903

Link: CVE-2026-64790

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T21:00:05Z

Weaknesses
  • CWE-22

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')