VDB
CVE-2026-28838
CVE-2026-28838
PUBLISHED
CVSS 8.699999809265137 HIGH
Ein Angreifer kann mehrere Schwachstellen in Apple macOS ausnutzen, um Sicherheitsvorkehrungen zu umgehen, um einen Denial of Service Angriff durchzuführen, um Informationen offenzulegen, um Dateien zu manipulieren, und um seine Privilegien zu erhöhen.
EPSS 0.47% · 38.4th percentile
Risk Scores
CVSS 4.0
8.699999809265137
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
EPSS Score
0.47%
38.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apple | Apple macOS Sequoia <15.7.5 | |
| Apple | Apple macOS Sonoma <14.8.5 | |
| Apple | Apple macOS Tahoe <26.4 |
Timeline
- Mar 24, 2026 CVE Published
- Mar 25, 2026 EPSS Score
- Mar 25, 2026 Coalition ESS Score
- Mar 25, 2026 PoC Published
- Mar 26, 2026 PoC Published
- Mar 26, 2026 PoC Published
- Mar 26, 2026 PoC Published
- May 18, 2026 EPSS Score
- May 19, 2026 EPSS Score
- May 20, 2026 EPSS Score
- May 21, 2026 EPSS Score
- May 22, 2026 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2026/wid-sec-w-2026-0853.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-0853 advisory
- https://support.apple.com/en-us/126794 advisory
- https://support.apple.com/en-us/126795 advisory
- https://support.apple.com/en-us/126796 advisory