CVE-2019-8526: Apple macOS Use-After-Free Vulnerability

High severity, CVSS 7.8. Actively exploited: in CISA KEV since 2023-04-17. EPSS: 0.7% chance of exploitation in the next 30 days.

A use after free issue was addressed with improved memory management. This issue is fixed in macOS Mojave 10.14.4. An application may be able to gain elevated privileges.

Affected products

  • Apple Mac OS X: before 10.14.4 (fixed in 10.14.4)

Published 2019-12-18. Last modified 2026-06-17.