Technology ยท 18 Aug
CISA adds four actively exploited flaws to its catalog, including a macOS Screen Sharing bypass that needs no password
On August 18 CISA added four vulnerabilities to its Known Exploited Vulnerabilities catalog on evidence of active exploitation: CVE-2026-65400, an authentication bypass in Apple macOS Screen Sharing; CVE-2026-33824, a Microsoft Internet Key Exchange double-free; CVE-2026-55040, weak authentication in Microsoft SharePoint; and CVE-2026-59310, a VMware vCenter path traversal. For a home reader the macOS one is the story: Apple's advisory states an attacker on the network can authenticate to Screen Sharing without valid credentials, and the fix shipped August 6 via improved state management - on macOS Tahoe that is version 26.6.1, with matching Sequoia and Sonoma releases the same day.
The action for Mac owners: install the update from System Settings > Software Update, or if you cannot update, turn off Screen Sharing. The other three CVEs concern Microsoft and VMware servers, so the people who need to act on them are IT administrators, who should treat the August Windows updates and vendor patches as urgent. Caveats: the CISA alert itself lists the CVEs and the exploitation evidence; the technical detail on the macOS flaw comes from Apple's advisory. KEV listing means exploitation is confirmed, not hypothetical.