LIVE · cybersecurity feed
Live wire
cve recordcritical

CVE-2026-18367

Published
CVSS9.3
Severitycritical
WeaknessCWE-285
ExploitedNot in CISA KEV

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Description

A privilege escalation vulnerability allows local users to execute arbitrary code as root via Sophos Endpoint for macOS older than version 2026.1.1 and Sophos Home for macOS older than version 10.11.6.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-18367

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-18367.