CVE-2026-65400
Known exploited (listed in CISA KEV after the first fix).
Export this CVE's branch rows: CSV · JSON · Permalink: /cve/CVE-2026-65400
- First fix
- (macOS Sonoma 14.8.9, macOS Sequoia 15.7.9, macOS Tahoe 26.6.1)
- CISA KEV added
- (12 days after the first fix)
- NVD published
- (same day)
First fix: The release date of the earliest Apple update (including Rapid Security Responses and Background Security Improvements) whose advisory lists the CVE.
KEV date added (proxy): CISA KEV “date added” is when CISA catalogued evidence of exploitation. It is a lagging proxy: exploitation started on or before that date, usually well before.
Fix per branch
Backport gap: For one CVE and one branch: the branch's first fix date minus the earliest fix date across all branches of the same platform.
No fix listed: The branch is still maintained (it shipped a security update after the earliest fix, or its last security update is under 180 days old), but no Apple advisory lists this CVE for it as of the data date. The branch may be unaffected; Apple does not publish “not affected” statements.
Branch ended: The branch shipped no security update after the earliest fix and none in the 180 days before the data date, so it is treated as ended and not counted as missing a backport. Updates without published CVE entries do not keep a branch alive.
Fixed at branch release: The branch was first released after the earliest fix, so it is not a backport and is not counted. “Listed”: its advisory names the CVE. “Inherited”: it does not, and the fix is assumed to be in the branch from its first release.
| Branch | Status | First fix on branch | Gap |
|---|---|---|---|
| macOS 27 Golden Gate | fixed at branch release (listed) | macOS Golden Gate 27 | – |
| macOS 26 Tahoe | fixed with the earliest fix | macOS Tahoe 26.6.1 | 0 d |
| macOS 15 Sequoia | fixed with the earliest fix | macOS Sequoia 15.7.9 | 0 d |
| macOS 14 Sonoma | fixed with the earliest fix | macOS Sonoma 14.8.9 | 0 d |
| macOS 13 Ventura | branch ended | – | – |
| macOS 12 Monterey | branch ended | – | – |
| macOS 11 Big Sur | branch ended | – | – |
| macOS 10 Catalina | branch ended | – | – |
Every Apple listing
Each release whose advisory lists CVE-2026-65400, with Apple's own notes.
| Release | Branch | Released | Entry added | Exploited note |
|---|---|---|---|---|
| macOS Sonoma 14.8.9 | macOS 14 Sonoma | with release | no | |
| macOS Sequoia 15.7.9 | macOS 15 Sequoia | with release | no | |
| macOS Tahoe 26.6.1 | macOS 26 Tahoe | with release | no | |
| macOS Tahoe 26.7 | macOS 26 Tahoe | with release | no | |
| macOS Golden Gate 27 | macOS 27 Golden Gate | with release | no |