homelab
macOS Screen Sharing pre-auth root (CVE-2026-65400): the forgotten 5900 forward on your homelab Mac
CVE-2026-65400 is a pre-auth root in macOS Screen Sharing's screensharingd, actively exploited and rescored 7.1 to 9.8. The patch is out, but the forgotten 5900 forward is the exposure: patch the Mac, verify nothing else can reach port 5900, and if it can, treat the box as compromised.