CVE-2019-8634: Apple Mac OS X
High severity, CVSS 8.8. EPSS: 1% chance of exploitation in the next 30 days.
An authentication issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.5. A user may be unexpectedly logged in to another user’s account.
Affected products
- Apple Mac OS X: before 10.12.6 (fixed in 10.12.6); before 10.14.5 (fixed in 10.14.5); from 10.13, before 10.13.6 (fixed in 10.13.6); version 10.12.6 only; version 10.13.6 only
Published 2019-12-18. Last modified 2026-06-17.