ACVEAgent configuration vulnerability registry

ACVE-2026-0439

Meta Muse on macOS, during normal assistant use, let local malware redirect dictation and capture the Muse token to read chat history and control the assistant.

Exposure

Reproducibility: partial (vulnerable components are not confirmed obtainable; trigger not published)

Claims

Confirmed means the statement matches the cited primary source. Nothing on this page has been reproduced.

Claims on this page have not been checked against primary sources.

In the wild

demonstrated · research

Description

What

The Hacker News reported a macOS Muse flaw in an undocumented dictation setting. Malware already running as the logged-in user could redirect dictated text, add instructions Muse would trust and capture a token that accesses the user's Muse account and chat history.

Detection

The report describes a researcher proof of concept and says Meta later pointed to a fix whose operation was not independently confirmed.

Fix

Install Meta's latest Muse update and avoid granting the app more access than needed.

Fix

Install the latest Muse update and minimize the app's granted access.

  • Upgrade harness:meta-muse to latest. The report says Meta has pushed a fix but gives no version. Owner: operator

References

ARTICLE

Report a problemJSON