Description
This issue was addressed with improved checks. This issue is fixed in macOS Golden Gate 27. An app may bypass Gatekeeper checks.
Published: 2026-09-14
Score: 4.4 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Unsigned Application Execution via Gatekeeper Bypass
Action: Patch
AI Analysis

Impact

An application circumventing macOS Gatekeeper removes the code‑signing verification that normally blocks unsigned or improperly signed software. The flaw is an improper access control that lets an authorized program override the security check, enabling malicious code to run without user consent.

Affected Systems

macOS releases older than Golden Gate 27 are vulnerable. The issue was fixed in macOS Golden Gate 27 by Apple, so any system running earlier versions may still be at risk if Gatekeeper is not correctly enforced.

Risk and Exploitability

The EPSS score is below 1 % and the vulnerability is not listed in CISA KEV, indicating a very low likelihood of exploitation at present. The CVSS score of 4.4 indicates a moderate severity. Nevertheless, the impact of successful bypass is the execution of unsigned code, which could lead to full system compromise if malware is launched. Exploitation would require delivery of a malicious application that evades the check; once executed, it would run with the user’s privileges. Upgrading to macOS Golden Gate 27 or applying the vendor patch removes the flaw entirely.

Generated by OpenCVE AI on September 20, 2026 at 19:27 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade to macOS Golden Gate 27 or a newer release to apply Apple’s Gatekeeper fix.
  • If delay is unavoidable, enforce strict Gatekeeper settings in System Settings > Security & Privacy > General by selecting 'Mac App Store and identified developers' to block unsigned software.
  • Complement primary controls with application whitelisting or least‑privilege policies to reduce the chance of accidentally running unauthorized code.

Generated by OpenCVE AI on September 20, 2026 at 19:27 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

References
History

Sun, 20 Sep 2026 19:45:00 +0000

Type Values Removed Values Added
Title Gatekeeper Bypass Enables Untrusted Application Execution on macOS

Thu, 17 Sep 2026 18:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-284
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 16 Sep 2026 15:15:00 +0000

Type Values Removed Values Added
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
Metrics cvssV3_1

{'score': 4.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N'}


Wed, 16 Sep 2026 10:30:00 +0000

Type Values Removed Values Added
Title Gatekeeper Bypass Allowing Unsigned Application Execution on macOS
Weaknesses CWE-284

Tue, 15 Sep 2026 10:15:00 +0000

Type Values Removed Values Added
Title Gatekeeper Bypass Allowing Unsigned Application Execution on macOS
Weaknesses CWE-284

Tue, 15 Sep 2026 01:15:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Vendors & Products Apple
Apple macos

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description This issue was addressed with improved checks. This issue is fixed in macOS Golden Gate 27. An app may bypass Gatekeeper checks.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-09-17T17:13:02.144Z

Reserved: 2026-07-22T00:46:31.443Z

Link: CVE-2026-65383

cve-icon Vulnrichment

Updated: 2026-09-17T16:01:20.236Z

cve-icon NVD

Status : Modified

Published: 2026-09-14T21:17:22.670

Modified: 2026-09-17T18:17:00.073

Link: CVE-2026-65383

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T19:30:04Z

Weaknesses