Known vulnerabilities in Defender for Endpoint for macOS
Vendor:
Microsoft
Software:
Defender for Endpoint for macOS
Software CPE:
cpe:2.3:a:microsoft:defender_for_endpoint_for_mac:*:*:*:*:*:*:*:*
Website:
https://www.microsoft.com
Total vulnerabilities:
6
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU138269 - Time-of-check Time-of-use (TOCTOU) Race Condition CVE-2026-50658 |
CWE-367 | Low | 101.26042.0020 | 17.07.2026 |
SB2026071726 |
||
| #VU138268 - Exposure of Private Information ('Privacy Violation') CVE-2026-50657 |
CWE-359 | Low | 101.26042.0020 | 17.07.2026 |
SB2026071726 |
||
| #VU138267 - Time-of-check Time-of-use (TOCTOU) Race Condition CVE-2026-56178 |
CWE-367 | Low | 101.26042.0020 | 17.07.2026 |
SB2026071726 |
||
| #VU134201 - Time-of-check Time-of-use (TOCTOU) Race Condition CVE-2026-45647 |
CWE-367 | Low | 101.26042.0011 | 10.06.2026 |
SB2026061041 |
||
| #VU67285 - Permissions, Privileges, and Access Controls CVE-2022-35828 |
CWE-264 | Low | - | 14.09.2022 |
SB2022091401 |
||
| #VU61126 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing) CVE-2022-23278 |
CWE-451 | Medium | - | 08.03.2022 |
SB2022030819 |