Apple macOS vulnerabilities
3,438 known vulnerabilities affecting apple/macos.
Total CVEs
3,438
CISA KEV
75
actively exploited
Public exploits
68
Exploited in wild
116
Severity breakdown
CRITICAL259HIGH1478MEDIUM1549LOW152
Vulnerabilities
Page 42 of 172
CVE-2024-27818P3HIGHCVSS 7.8≥ 14.0, < 14.5fixed in 14.52024-05-14
CVE-2024-27818 [HIGH] CWE-77 CVE-2024-27818: The issue was addressed with improved memory handling. This issue is fixed in iOS 16.7.8 and iPadOS
The issue was addressed with improved memory handling. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5. An attacker may be able to cause unexpected app termination or arbitrary code execution.
nvd
CVE-2024-23265P3HIGHCVSS 7.8≥ 12.0, < 12.7.4≥ 13.0, < 13.6.5+4 more2024-03-08
CVE-2024-23265 [HIGH] CWE-787 CVE-2024-23265: A memory corruption vulnerability was addressed with improved locking. This issue is fixed in iOS 16
A memory corruption vulnerability was addressed with improved locking. This issue is fixed in iOS 16.7.6 and iPadOS 16.7.6, iOS 17.4 and iPadOS 17.4, macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5, tvOS 17.4, visionOS 1.1, watchOS 10.4. An app may be able to cause unexpected system termination or write kernel memory.
nvd
CVE-2019-8561P3HIGHCVSS 7.8≥ unspecified, < macOS Mojave 10.14.42019-12-18
CVE-2019-8561 [HIGH] CWE-20 CVE-2019-8561: A logic issue was addressed with improved validation. This issue is fixed in macOS Mojave 10.14.4. A
A logic issue was addressed with improved validation. This issue is fixed in macOS Mojave 10.14.4. A malicious application may be able to elevate privileges.
nvd
CVE-2022-32924P3HIGHCVSS 7.8fixed in 13.0≥ 11.0, < 11.7+2 more2022-11-01
CVE-2022-32924 [HIGH] CWE-94 CVE-2022-32924: The issue was addressed with improved memory handling. This issue is fixed in tvOS 16.1, macOS Big S
The issue was addressed with improved memory handling. This issue is fixed in tvOS 16.1, macOS Big Sur 11.7, macOS Ventura 13, watchOS 9.1, iOS 16.1 and iPadOS 16, macOS Monterey 12.6. An app may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2023-38572P3HIGHCVSS 7.5≥ 13.0, < 13.5≥ unspecified, < 13.52023-07-27
CVE-2023-38572 [HIGH] CVE-2023-38572: The issue was addressed with improved checks. This issue is fixed in iOS 15.7.8 and iPadOS 15.7.8, i
The issue was addressed with improved checks. This issue is fixed in iOS 15.7.8 and iPadOS 15.7.8, iOS 16.6 and iPadOS 16.6, tvOS 16.6, macOS Ventura 13.5, Safari 16.6, watchOS 9.6. A website may be able to bypass Same Origin Policy.
nvd
CVE-2025-24224P3HIGHCVSS 7.5fixed in 13.7.7≥ 15.0, < 15.5+1 more2025-07-30
CVE-2025-24224 [HIGH] CWE-754 CVE-2025-24224: The issue was addressed with improved checks. This issue is fixed in iOS 18.5 and iPadOS 18.5, iPadO
The issue was addressed with improved checks. This issue is fixed in iOS 18.5 and iPadOS 18.5, iPadOS 17.7.9, macOS Sequoia 15.5, macOS Ventura 13.7.7, tvOS 18.5, visionOS 2.5, watchOS 11.5. A remote attacker may be able to cause unexpected system termination.
nvd
CVE-2022-32897P3HIGHCVSS 7.8fixed in 12.5≥ unspecified, < 12.52024-06-10
CVE-2022-32897 [HIGH] CWE-787 CVE-2022-32897: A memory corruption issue was addressed with improved validation. This issue is fixed in macOS Monte
A memory corruption issue was addressed with improved validation. This issue is fixed in macOS Monterey 12.5. Processing a maliciously crafted tiff file may lead to arbitrary code execution.
nvd
CVE-2024-23247P3HIGHCVSS 7.8≥ 12.0, < 12.7.4≥ 13.0, < 13.6.5+4 more2024-03-08
CVE-2024-23247 [HIGH] CWE-77 CVE-2024-23247: The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.7.4,
The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5. Processing a file may lead to unexpected app termination or arbitrary code execution.
nvd
CVE-2023-41063P3HIGHCVSS 7.8≥ 13.0, < 13.6≥ unspecified, < 13.6+1 more2023-09-27
CVE-2023-41063 [HIGH] CVE-2023-41063: The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tv
The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and iPadOS 16.7, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2023-42841P3HIGHCVSS 7.8≥ 13.0, < 13.6.1≥ 14.0, < 14.1+2 more2023-10-25
CVE-2023-42841 [HIGH] CWE-119 CVE-2023-42841: The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.1, iOS
The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.1, iOS 17.1 and iPadOS 17.1, iOS 16.7.2 and iPadOS 16.7.2, macOS Ventura 13.6.1. An app may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2024-23212P3HIGHCVSS 7.8≥ 12.0, < 12.7.3≥ 13.0, < 13.6.4+4 more2024-01-23
CVE-2024-23212 [HIGH] CVE-2024-23212: The issue was addressed with improved memory handling. This issue is fixed in iOS 16.7.5 and iPadOS
The issue was addressed with improved memory handling. This issue is fixed in iOS 16.7.5 and iPadOS 16.7.5, iOS 17.3 and iPadOS 17.3, macOS Monterey 12.7.3, macOS Sonoma 14.3, macOS Ventura 13.6.4, tvOS 17.3, watchOS 10.3. An app may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2026-43668P3HIGHCVSS 7.5≥ 14.0, < 14.8.7≥ 15.0, < 15.7.7+4 more2026-05-11
CVE-2026-43668 [HIGH] CWE-416 CVE-2026-43668: A use after free issue was addressed with improved memory management. This issue is fixed in iOS 18.
A use after free issue was addressed with improved memory management. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Sequoia 15.7.7, macOS Sonoma 14.8.7, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, watchOS 26.5. A remote attacker may be able to cause unexpected system termination or corrupt kernel memory.
nvd
CVE-2021-30704P3HIGHCVSS 7.8≥ 11.0, < 11.4≥ unspecified, < 11.4+3 more2021-09-08
CVE-2021-30704 [HIGH] CVE-2021-30704: A logic issue was addressed with improved state management. This issue is fixed in tvOS 14.6, Securi
A logic issue was addressed with improved state management. This issue is fixed in tvOS 14.6, Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6, Security Update 2021-003 Catalina, macOS Big Sur 11.4, watchOS 7.5. An application may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2023-41071P3HIGHCVSS 7.8≥ 13.0, < 13.6≥ unspecified, < 13.62023-09-27
CVE-2023-41071 [HIGH] CWE-416 CVE-2023-41071: A use-after-free issue was addressed with improved memory management. This issue is fixed in tvOS 17
A use-after-free issue was addressed with improved memory management. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10, macOS Ventura 13.6. An app may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2023-40412P3HIGHCVSS 7.8≥ 12.0.0, < 12.7≥ 13.0, < 13.6+2 more2023-09-27
CVE-2023-40412 [HIGH] CVE-2023-40412: The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tv
The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17. An app may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2023-40409P3HIGHCVSS 7.8≥ 12.0.0, < 12.7≥ 13.0, < 13.6+2 more2023-09-27
CVE-2023-40409 [HIGH] CVE-2023-40409: The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tv
The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17. An app may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2024-40809P3HIGHCVSS 7.8fixed in 12.7.6≥ 13.0, < 13.6.8+3 more2024-07-29
CVE-2024-40809 [HIGH] CVE-2024-40809: A logic issue was addressed with improved checks. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.
A logic issue was addressed with improved checks. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Monterey 12.7.6, macOS Sonoma 14.6, macOS Ventura 13.6.8, visionOS 1.3, watchOS 10.6. A shortcut may be able to bypass Internet permission requirements.
nvd
CVE-2021-30703P3HIGHCVSS 7.8≥ 11.0, < 11.4≥ unspecified, < 11.4+3 more2021-09-08
CVE-2021-30703 [HIGH] CWE-415 CVE-2021-30703: A double free issue was addressed with improved memory management. This issue is fixed in tvOS 14.6,
A double free issue was addressed with improved memory management. This issue is fixed in tvOS 14.6, iOS 14.6 and iPadOS 14.6, Security Update 2021-004 Catalina, Security Update 2021-005 Mojave, macOS Big Sur 11.4, watchOS 7.5. An application may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2026-20698P3HIGHCVSS 7.8≥ 26.0, < 26.4fixed in 26.42026-03-25
CVE-2026-20698 [HIGH] CWE-787 CVE-2026-20698: The issue was addressed with improved memory handling. This issue is fixed in iOS 26.4 and iPadOS 26
The issue was addressed with improved memory handling. This issue is fixed in iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4, tvOS 26.4, visionOS 26.4, watchOS 26.4. An app may be able to cause unexpected system termination or corrupt kernel memory.
nvd
CVE-2025-24159P3HIGHCVSS 7.8fixed in 14.7.3≥ 15.0, < 15.3+1 more2025-01-27
CVE-2025-24159 [HIGH] CWE-94 CVE-2025-24159: A validation issue was addressed with improved logic. This issue is fixed in iOS 18.3 and iPadOS 18.
A validation issue was addressed with improved logic. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.4, macOS Sequoia 15.3, macOS Sonoma 14.7.3, tvOS 18.3, visionOS 2.3, watchOS 11.3. An app may be able to execute arbitrary code with kernel privileges.
nvd