High severity7.8NVD Advisory· Published Jul 27, 2026· Updated Aug 5, 2026
CVE-2026-39875
CVE-2026-39875
Description
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A malicious app may be able to gain root privileges.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*range: >=14.0,<14.8.8
- (no CPE)range: Sequoia 15.7.8, Sonoma 14.8.8, Tahoe 26.6
Patches
Vulnerability mechanics
References
3- support.apple.com/en-us/128067nvdRelease NotesVendor Advisory
- support.apple.com/en-us/128071nvdRelease NotesVendor Advisory
- support.apple.com/en-us/128072nvdRelease NotesVendor Advisory
News mentions
3- Public PoC Released for CUPS Vulnerability Allows Attackers to Gain Root PrivilegesCyber Security News · Aug 4, 2026
- Apple Patches Everything (July 2026), (Wed, Jul 29th)SANS Internet Storm Center · Jul 29, 2026
- Apple Releases 25 macOS Security Patches, Including CUPS Privilege Escalation FlawVypr Intelligence · Jul 27, 2026