Description
A certificate validation issue was addressed with improved certificate validation. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An attacker in a privileged network position may be able to intercept network traffic.
Published: 2026-09-14
Score: n/a
EPSS: n/a
KEV: No
Impact: Confidentiality breach through network traffic interception
Action: Immediate Patch
AI Analysis

Impact

A flaw in macOS’s certificate validation process can allow an attacker positioned on a privileged network segment to bypass authentication checks and intercept SSL/TLS traffic, effectively performing a man‑in‑the‑middle. This weakness is a direct implication of improper certificate validation (CWE‑295) and enables the attacker to read or tamper with confidential data transmitted over the network.

Affected Systems

Apple’s macOS in the Golden Gate series up to 26 to 15.7, and Tahoe up to 26.6 are affected. The vulnerability is resolved in macOS Golden Gate 27, macOS Sequoia 15.8, and macOS Tahoe 26.7.

Risk and Exploitability

The attacker must already have a privileged position on the network to exploit this flaw. No CVSS score is available, and the EPSS score is not provided, indicating no publicly reported data on the likelihood of exploitation. The vulnerability is not listed in CISA’s KEV catalog. However, once the condition of a privileged network segment is met, the attack can be carried out with a simple certificate spoofing technique, underscoring the potential for high impact data compromise.

Generated by OpenCVE AI on September 15, 2026 at 08:04 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade macOS to Golden Gate 27, Sequoia 15.8, or Tahoe 26.7 or later to apply Apple’s fix
  • Configure network devices to enforce strict certificate pinning or chain validation and reject untrusted certificates
  • Apply additional monitoring to detect unexpected TLS handshakes or certificate anomalies that may indicate a man‑in‑the‑middle attack

Generated by OpenCVE AI on September 15, 2026 at 08:04 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 15 Sep 2026 08:30:00 +0000

Type Values Removed Values Added
Title Certificate Validation Issue Allows Traffic Interception in macOS
Weaknesses CWE-295

Tue, 15 Sep 2026 03:30:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Vendors & Products Apple
Apple macos

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description A certificate validation issue was addressed with improved certificate validation. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An attacker in a privileged network position may be able to intercept network traffic.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-09-14T20:50:30.682Z

Reserved: 2026-09-08T16:43:41.872Z

Link: CVE-2026-86889

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-14T21:17:39.860

Modified: 2026-09-14T21:17:39.860

Link: CVE-2026-86889

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-15T08:15:13Z

Weaknesses
  • CWE-295

    Improper Certificate Validation