CVE-2026-43728
HIGH
7.5
CVSS 3.1
Description
This issue was addressed through improved state management. This issue is fixed in macOS Tahoe 26.6. An attacker may be able to modify the state of the Keychain.
Metadata
Severity & Metrics
7.5
HIGH CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
SSVC — CISA Coordinator
Affected products (1)
| Vendor | Product | Platform | Versions |
|---|---|---|---|
| Apple | macOS | — | 0 < 26.6 |
Weakness (CWE)
| CWE | Source | Description |
|---|---|---|
| — | cna | An attacker may be able to modify the state of the Keychain |
| CWE-362 | adp | CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') |
CVSS scores (1)
| Score | Severity | Version | Source | Vector |
|---|---|---|---|---|
| 7.5 | HIGH | 3.1 | adp | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N |
References (1)