Skip to content

CVE-2026-28836

MEDIUM  |  Platform: macOS  |  Changelog

CVE Details

Description

A correctness issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.8.8. An attacker with physical access may be able to silently persist an Apple Account on an erased device.

CVSS 3.1 Score

MetricValue
Base Score6.1 (MEDIUM)
VectorCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Weakness

References