---
id: CVE-2026-43696
title: An authorization issue was addressed with improved entitlement checks
summary: >-
  An authorization issue was addressed with improved entitlement checks. This
  issue is fixed in macOS Golden Gate 27. An app may be able to capture Touch
  Bar content without authorization.
severity: medium
cvss: 5.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N'
cwe:
  - CWE-862
vendor: apple
product: macos
affected:
  - macos < 27.0
patched:
  - macos 27.0
published: '2026-09-14'
updated: '2026-09-17'
sourceUpdated: '2026-09-17T21:17:11.897'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-43696'
references:
  - url: 'https://support.apple.com/en-us/149035'
    label: product-security@apple.com
tags:
  - nvd
  - cve.org
ssvc:
  exploitation: none
  automatable: 'yes'
  technicalImpact: partial
  timestamp: '2026-09-17T20:29:45.557895Z'
epss: 0.00291
epssPercentile: 0.19238
ingestedAt: '2026-09-14T21:15:17.502Z'
---

## Overview

An authorization issue was addressed with improved entitlement checks. This issue is fixed in macOS Golden Gate 27. An app may be able to capture Touch Bar content without authorization.

## Affected

- `macos < 27.0`

## Remediation

Upgrade past the affected range:

- `macos 27.0`
