VYPR
Medium severity5.5NVD Advisory· Published Jul 27, 2026· Updated Aug 25, 2026

CVE-2026-28849

CVE-2026-28849

Description

The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.5. A maliciously crafted ZIP archive may bypass Gatekeeper checks.

Affected products

2
  • Apple Inc./macOS2 versions
    cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*range: >=14.0,<14.8.8
    • (no CPE)range: Sequoia 15.7.8, Sonoma 14.8.8

Patches

Vulnerability mechanics

References

3

News mentions

3