cbcvebase.
CVE-2026-20699
published 2026-03-25

CVE-2026-20699: A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions. This issue is fixed in macOS Sequoia 15.7.5…

PriorityP428medium6.2CVSS 3.1
AVLACLPRNUINSUCHINAN
EPSS
0.14%
3.5th percentile
A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 14.8.5, macOS Tahoe 26.3, macOS Tahoe 26.4. An app may be able to access user-sensitive data.

Affected

8 ranges
VendorProductVersion rangeFixed in
applemacos< 14.8.514.8.5
applemacos< 15.7.515.7.5
applemacos< 26.326.3
applemacos< 26.426.4
applemacos>= 14.0 < 14.8.514.8.5
applemacos>= 15.0 < 15.7.515.7.5
applemacos>= 26.0 < 26.326.3
applemacos_tahoe
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.