This issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to access sensitive user data.
PUBLISHED5.2
Problem type
- An app may be able to access sensitive user data
Affected products
Apple
macOS
< 14.8.8 - AFFECTED
< 15.7.8 - AFFECTED
< 26.6 - AFFECTED
References
support.apple.com
https://support.apple.com/en-us/128067
support.apple.com
https://support.apple.com/en-us/128071
support.apple.com
https://support.apple.com/en-us/128072
GitHub Security Advisories
GHSA-chxv-3mf7-4wrf
This issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.8, macOS...
https://github.com/advisories/GHSA-chxv-3mf7-4wrfThis issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to access sensitive user data.
JSON source
https://cveawg.mitre.org/api/cve/CVE-2026-43782Click to expand
{
"dataType": "CVE_RECORD",
"dataVersion": "5.2",
"cveMetadata": {
"cveId": "CVE-2026-43782",
"assignerOrgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"assignerShortName": "apple",
"dateUpdated": "2026-07-28T14:26:54.028Z",
"dateReserved": "2026-05-01T22:46:27.819Z",
"datePublished": "2026-07-27T20:15:00.118Z",
"state": "PUBLISHED"
},
"containers": {
"cna": {
"providerMetadata": {
"orgId": "286789f9-fbc2-4510-9f9a-43facdede74c",
"shortName": "apple",
"dateUpdated": "2026-07-27T20:15:00.118Z"
},
"descriptions": [
{
"lang": "en",
"value": "This issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to access sensitive user data."
}
],
"affected": [
{
"vendor": "Apple",
"product": "macOS",
"versions": [
{
"version": "0",
"status": "affected",
"versionType": "custom",
"lessThan": "14.8.8"
},
{
"version": "0",
"status": "affected",
"versionType": "custom",
"lessThan": "15.7.8"
},
{
"version": "0",
"status": "affected",
"versionType": "custom",
"lessThan": "26.6"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"lang": "en",
"description": "An app may be able to access sensitive user data"
}
]
}
],
"references": [
{
"url": "https://support.apple.com/en-us/128067"
},
{
"url": "https://support.apple.com/en-us/128071"
},
{
"url": "https://support.apple.com/en-us/128072"
}
]
},
"adp": [
{
"providerMetadata": {
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP",
"dateUpdated": "2026-07-28T14:26:54.028Z"
},
"title": "CISA ADP Vulnrichment",
"problemTypes": [
{
"descriptions": [
{
"lang": "en",
"description": "CWE-200 Exposure of Sensitive Information to an Unauthorized Actor",
"cweId": "CWE-200",
"type": "CWE"
}
]
}
],
"metrics": [
{
"cvssV3_1": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N",
"attackVector": "LOCAL",
"attackComplexity": "LOW",
"privilegesRequired": "NONE",
"userInteraction": "REQUIRED",
"scope": "UNCHANGED",
"confidentialityImpact": "HIGH",
"integrityImpact": "NONE",
"availabilityImpact": "NONE",
"baseScore": 5.5,
"baseSeverity": "MEDIUM"
}
},
{}
]
}
]
}
}