← Back to CVE search

CVE-2026-28823

macOS

Description

A path handling issue was addressed with improved validation. This issue is fixed in macOS Tahoe 26.4. An app with root privileges may be able to delete protected system files.

CVSS 4.9EPSS 0.294%Risk 0.5
View source
Published
2026-03-25 01:17:07
Affected versions
<26.4
Type
Core software
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Operating systems
MacOS