CVE-2026-28912(apple / macos)

LOWCVSS 7.8 · HIGH

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.7, macOS Tahoe 26.6. A user may be able to elevate privileges.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-693

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • macos

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • 3 total mentions across 1 day

Affected systems

Vendors
Products
macos

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-09-28: 309-28
Referenced assets3 URLs
Full discourse3 posts
  • dbugs@ptdbugs

    A PoC/exploit has been discovered for vulnerability CVE-2026-28912 PT ID: PT-2026-65123 Vendor: Apple Product: macOS Description: A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.7, macOS Tahoe 26.6. A user may be able to elevate privileges. References: • https://dbu.gs/vulnerability/PT-2026-65123 • https://github.com/jvidhan/cve-2026-28912

    11071691
    3.6K followersView on X
  • ExploitGrid@exploitgrid

    🚨 PoC released for CVE-2026-28912. A macOS logic flaw can allow a user to elevate privileges. CVSS 7.8 | EPSS 0.18% ExploitGrid: 31.3/100 PoC: https://github.com/jvidhan/cve-2026-28912 🔎 https://exploitgrid.net/vulnerabilities/CVE-2026-28912

    00040133
    193 followersView on X
  • Rıdvan Yağlı@ridvanyagli

    🔴 macOS Tahoe Apple PackageKit'te, kötü amaçlı .pkg dosyası üzerinden directory symlink'in takip edilmesine yol açan güvenlik açığı (CVE-2026-28912) için çalışan PoC yayınlandı. CVSS: 7.8 (High) Etki: Root yetkisiyle hedeflenen konuma dosya yazma 💻 Etkilenen: macOS Tahoe ≤ 26.5 ✅ Yama: macOS Tahoe 26.6 PoC, installer root olarak çalışırken symlink üzerinden dosyanın farklı bir konuma root:wheel sahipliğiyle yazılabildiğini doğruluyor. ⚠️ PoC doğrudan RCE/root shell göstermiyor. https://github.com/jvidhan/cve-2026-28912

    10020356
    2.4K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
OSapplemacos---

Explore more