Apple released macOS updates to fix a security vulnerability that could allow attackers on the same network to bypass authentication [1].

The flaw represents a significant risk to users who enable remote access features. If exploited, an attacker could gain unauthorized control of a Mac computer without providing the required credentials, compromising sensitive data and system integrity.

The vulnerability is identified as CVE-2026-65400 [1]. It specifically affects the Screen Sharing feature across several operating system versions, including macOS Tahoe, Sequoia, and Sonoma [1], [2]. According to the reports, the flaw allows a malicious actor located on the same local network as the target device to circumvent the authentication process [1].

Apple has issued patches for these versions to close the security gap [2]. The company said users should install the latest software updates immediately to protect their devices from potential exploitation [2].

Security researchers said vulnerabilities allowing authentication bypass are particularly dangerous because they remove the primary barrier between a public or shared network and a private machine. While the attack requires the perpetrator to be on the same network, this remains a viable threat in office environments or public Wi-Fi settings where multiple devices are connected to a single access point [1].

Users can check for available updates through the System Settings menu on their Mac computers. Installing the update ensures that the Screen Sharing protocol is patched against the specific exploit identified in CVE-2026-65400 [1].

Attackers on the same network could bypass authentication.

This update highlights the ongoing tension between remote connectivity and security. By targeting the Screen Sharing feature, attackers can effectively 'hijack' a session, making the patch critical for corporate environments where remote administration is common and network trust is often assumed.