Apple recently released important security updates for macOS that address a vulnerability in the built-in Screen Sharing service.
The vulnerability, identified as CVE-2026-65400, could allow an attacker on the network to authenticate to Screen Sharing without valid credentials. Reports now indicate that the vulnerability has been actively exploited on Macs where Screen Sharing was accessible from the Internet.
Because Screens relies on the Screen Sharing service built into macOS when connecting to a Mac, we strongly recommend that all Screens users install the latest macOS updates as soon as possible.
The fix is included in:
- macOS Sonoma 14.8.9
- macOS Sequoia 15.7.9
- macOS Tahoe 26.6.1
This vulnerability is in macOS itself and does not affect Screens or Screens Connect. However, Macs configured for remote access may be exposed if they are running an older, vulnerable version of macOS.
To stay protected, open System Settings → General → Software Update on any Mac you access remotely and install the latest available update.
If you use Screens Connect or another method to access your Mac remotely, we particularly recommend updating promptly.
An Additional Layer of Protection
For users who want to further restrict access to Screen Sharing, Screens can connect to a Mac through an SSH tunnel instead of exposing the Screen Sharing service directly.
Our Disabling Remote Screen Sharing connections on your Mac guide explains how to configure this.
This is optional and does not replace installing the latest macOS security updates, which we strongly recommend.
For more information about the vulnerability and Apple's security updates, see Apple's security advisory.