Description
CVE-2026-65400 describes an improper authentication vulnerability in macOS that abuses the daemon behind screen sharing, screensharingd, a VNC-based remote desktop service operating on TCP/5900.
Impact
Exploitation of this vulnerability allows attackers to initiate a screen-sharing session to access files and perform remote code execution as root. Delivery and execution of XMRig cryptominers have been a common outcome when this vulnerability has been exploited in the wild.
CVE-2025-43524
A critical vulnerability in macOS Icon handling (CVE-2025-43524) allows app sandbox escape. Update to the latest versions to secure your system now.
Learn MoreCVE-2026-28827
A critical vulnerability in macOS Tahoe could allow sandboxed apps to escape their confines. Learn about CVE-2026-28827 and how Apple has addressed this issue.
Learn MoreCVE-2025-55182
Critical React vulnerability CVE-2025-55182 allows remote code execution. Update to patched versions immediately to secure affected React Server Components and frameworks.
Learn More