A recently disclosed vulnerability (CVE-2026-65400) affects Apple macOS Screen Sharing and may allow a remote attacker on the network to authenticate without valid credentials, potentially gaining unauthorized access to affected systems. Severity level: CVSS Score: 9.8/Critical. Description: CVE-2026-65400 is a critical authentication bypass vulnerability in the macOS Screen Sharing component. Due to improper state management during authentication, a network-based attacker may be able to establish a Screen Sharing session without valid credentials. Successful exploitation could allow unauthorized access to affected macOS systems and remote control of exposed devices. Affected Versions:
macOS Sonoma versions prior to 14.8.9.
macOS Sequoia versions prior to 15.7.9.
macOS Tahoe versions prior to 26.6.1.
Impact: Successful exploitation may allow attackers to gain unauthorized remote access to affected macOS systems. Resolution: Upgrade affected systems to:
macOS Sonoma version 14.8.9 or later.
macOS Sequoia version 15.7.9 or later.
macOS Tahoe version 26.6.1 or later.
Mitigations:
Disable Screen Sharing on systems where it is not required.
Limit Screen Sharing access to trusted IP addresses and administrative networks.
Monitor systems for unauthorized remote access attempts and unusual account activity.
Review internet-facing macOS systems to ensure Screen Sharing is not unnecessarily exposed.