October 2, 2026
ChatGPT chats on Mac could have been exposed to attackers: OpenAI patches vulnerability
OpenAI fixed CVE-2026-100754 in macOS version 26.924.20706, listed in the changelog dated Sep 25, 2026.
Before the fix, an attacker could take over ChatGPT on a Mac and read saved chats and data.
An attacker could also run commands as the app with access to the browser. OpenAI has now patched this vulnerability in the updated app.
Bypassing signature checks. Security researcher Patrick Wardle of the Objective-See Foundation created a 12-line proof of concept, according to WIRED on Oct 2. It used 3 consecutive runs of a trusted script interpreter.
How to install the fix. Open the app menu in the menu bar at the top of the screen and select Check for Updates. Install the update, fully quit ChatGPT, and reopen the app.
The official ChatGPT download page automatically selects the installer for Apple Silicon or Intel.
Source
