HIGH
Waves Audio Ltd.
CVE published 2026-09-08
CVE-2026-86819
A local privilege escalation vulnerability exists in Waves Central for macOS due to improper validation of client code-signing certificates by the privileged helper service. This allows a local, authenticated user to execute code within the vendor-signed process and cause the helper to execute a script with root privileges. The issue was fixed in version 17.0.