Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 20 Aug 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | NoSleep 1.5.1 exposes a privileged XPC Mach service and accepts raw dictionary messages containing attacker-controlled command and NSBundlePath values.This issue affects NoSleep: 1.5.1. | |
| Title | NoSleep 1.5.1 - Unauthorized disclosure of root-owned files through privileged XPC helper | |
| First Time appeared |
Nosleep
Nosleep nosleep |
|
| Weaknesses | CWE-862 | |
| CPEs | cpe:2.3:a:nosleep:nosleep:1.5.1:*:macos:*:*:*:*:* | |
| Vendors & Products |
Nosleep
Nosleep nosleep |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Fluid Attacks
Published:
Updated: 2026-08-20T20:26:12.423Z
Reserved: 2026-08-13T15:38:11.224Z
Link: CVE-2026-19755
No data.
Status : Received
Published: 2026-08-20T21:17:06.283
Modified: 2026-08-20T21:17:06.283
Link: CVE-2026-19755
No data.
OpenCVE Enrichment
No data.