CVE-2020-9935: Apple Mac OS X

Medium severity, CVSS 4.3. EPSS: 0.7% chance of exploitation in the next 30 days.

A logic issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15.6. A user may be unexpectedly logged in to another user’s account.

Affected products

  • Apple Mac OS X: before 10.15.6 (fixed in 10.15.6)

Published 2020-10-22. Last modified 2026-06-17.