CVE-2024-44286Patch(apple / macos)

LOWCVSS 7.5 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Patch apple macos systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.1. An attacker with physical access can input keyboard events to apps running on a locked device.

0.5/ 10 priority

Sources & remediation

Vendor / third-party advisories
Weakness type (CWE)
CWE-288

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • macos

Threat summary

  • Patch or workaround signal is available
  • 2 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 2 signals
  • 2 total mentions across 1 day

Affected systems

Vendors
Products
macos

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-04-03: 2Patch / Workaround · 2026-04-03: 2Technical Details · 2026-04-03: 204-03
Signal classification1 categories
Patch
2100.0%
Referenced assets2 URLs
By indicator
Full discourse2 posts
  • Infoflowcloud@infoflowcloud
    Patch

    🚨*CVE* CVE-2024-44286 This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.1. An attacker with physical access can input keyboard events to a… https://www.cve.org/CVERecord?id=CVE-2024-44286 ----- Traducción: CVE-2024-44286 Est… http://infoflow.cloud`

    Post summary

    The post announces that CVE‑2024‑44286 is addressed in macOS Sequoia 15.1, with no PoC, exploit, or evidence of active exploitation reported.

    0000046
    65 followersView on X
  • CVE@CVEnew
    Patch

    CVE-2024-44286 This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.1. An attacker with physical access can input keyboard events to a… https://www.cve.org/CVERecord?id=CVE-2024-44286

    Post summary

    CVE‑2024‑44286 involves a physical‑access keyboard‑event injection flaw that was fixed in macOS Sequoia 15.1 through improved state management.

    00000272
    56.9K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
OSapplemacos---

Explore more