Apple macOS vulnerabilities
3,438 known vulnerabilities affecting apple/macos.
Total CVEs
3,438
CISA KEV
75
actively exploited
Public exploits
68
Exploited in wild
116
Severity breakdown
CRITICAL259HIGH1478MEDIUM1549LOW152
Vulnerabilities
Page 69 of 172
CVE-2021-1875P3HIGHCVSS 7.8≥ 11.0, < 11.3≥ unspecified, < 11.3+1 more2021-09-08
CVE-2021-1875 [HIGH] CWE-415 CVE-2021-1875: A double free issue was addressed with improved memory management. This issue is fixed in Security U
A double free issue was addressed with improved memory management. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. Processing a maliciously crafted file may lead to heap corruption.
nvd
CVE-2021-1747P3HIGHCVSS 7.8≥ 11.0, < 11.2≥ unspecified, < 11.2+2 more2021-04-02
CVE-2021-1747 [HIGH] CWE-787 CVE-2021-1747: An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Bi
An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. Processing maliciously crafted web content may lead to code execution.
nvd
CVE-2020-29625P3HIGHCVSS 7.8≥ 11.0, < 11.1.0≥ unspecified, < 11.12021-04-02
CVE-2020-29625 [HIGH] CVE-2020-29625: This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.1, Security U
This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave. Processing a maliciously crafted image may lead to arbitrary code execution.
nvd
CVE-2020-27939P3HIGHCVSS 7.8fixed in 11.1.0≥ unspecified, < 11.12021-04-02
CVE-2020-27939 [HIGH] CVE-2020-27939: This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.1, Security U
This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave. Processing a maliciously crafted image may lead to arbitrary code execution.
nvd
CVE-2022-32801P3HIGHCVSS 7.8≥ 12.0, < 12.5≥ unspecified, < 12.52022-09-23
CVE-2022-32801 [HIGH] CWE-269 CVE-2022-32801: This issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.5. An app ma
This issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.5. An app may be able to gain root privileges.
nvd
CVE-2020-9996P3HIGHCVSS 7.8≥ unspecified, < 11.02020-12-08
CVE-2020-9996 [HIGH] CWE-416 CVE-2020-9996: A use after free issue was addressed with improved memory management. This issue is fixed in macOS B
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.0 and iPadOS 14.0. A malicious application may be able to elevate privileges.
nvd
CVE-2022-26761P3HIGHCVSS 7.8≥ 11.0, < 11.6.6≥ unspecified, < 11.62022-05-26
CVE-2022-26761 [HIGH] CWE-787 CVE-2022-26761: A memory corruption issue was addressed with improved memory handling. This issue is fixed in Securi
A memory corruption issue was addressed with improved memory handling. This issue is fixed in Security Update 2022-004 Catalina, macOS Big Sur 11.6.6. An application may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2020-9869P3HIGHCVSS 7.5≥ unspecified, < macOS Catalina 10.15.62020-10-22
CVE-2020-9869 [HIGH] CWE-787 CVE-2020-9869: A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS
A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.6. A remote attacker may cause an unexpected application termination.
nvd
CVE-2022-22612P3HIGHCVSS 7.8≥ 12.0, < 12.3≥ unspecified, < 12.32022-03-18
CVE-2022-22612 [HIGH] CWE-787 CVE-2022-22612: A memory consumption issue was addressed with improved memory handling. This issue is fixed in tvOS
A memory consumption issue was addressed with improved memory handling. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, iTunes 12.12.3 for Windows, watchOS 8.5, macOS Monterey 12.3. Processing a maliciously crafted image may lead to heap corruption.
nvd
CVE-2022-26718P3HIGHCVSS 7.8≥ 11.0, < 11.6.6≥ 12.0.0, < 12.4+2 more2022-05-26
CVE-2022-26718 [HIGH] CWE-125 CVE-2022-26718: An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in mac
An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.4, macOS Big Sur 11.6.6. An application may be able to gain elevated privileges.
nvd
CVE-2025-30471P3HIGHCVSS 7.5fixed in 13.7.5fixed in 14.7.5+2 more2025-03-31
CVE-2025-30471 [HIGH] CWE-20 CVE-2025-30471: A validation issue was addressed with improved logic. This issue is fixed in iOS 18.4 and iPadOS 18.
A validation issue was addressed with improved logic. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. A remote user may be able to cause a denial-of-service.
nvd
CVE-2022-0351P3HIGHCVSS 7.8fixed in 12.62022-01-25
CVE-2022-0351 [HIGH] CWE-786 CVE-2022-0351: Access of Memory Location Before Start of Buffer in GitHub repository vim/vim prior to 8.2.
Access of Memory Location Before Start of Buffer in GitHub repository vim/vim prior to 8.2.
nvd
CVE-2024-27832P3HIGHCVSS 7.8≥ 14.0, < 14.5fixed in 14.52024-06-10
CVE-2024-27832 [HIGH] CWE-703 CVE-2024-27832: The issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS
The issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. An app may be able to elevate privileges.
nvd
CVE-2022-22609P3HIGHCVSS 7.5≥ 12.0, < 12.3≥ unspecified, < 12.32022-03-18
CVE-2022-22609 [HIGH] CVE-2022-22609: The issue was addressed with additional permissions checks. This issue is fixed in tvOS 15.4, iOS 15
The issue was addressed with additional permissions checks. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, macOS Monterey 12.3, watchOS 8.5. A malicious application may be able to read other applications' settings.
nvd
CVE-2024-27811P3HIGHCVSS 7.8≥ 14.0, < 14.5fixed in 14.52024-06-10
CVE-2024-27811 [HIGH] CWE-269 CVE-2024-27811: The issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS
The issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. An app may be able to elevate privileges.
nvd
CVE-2025-24129P3HIGHCVSS 7.5fixed in 15.3fixed in 13.7.5+1 more2025-01-27
CVE-2025-24129 [HIGH] CWE-843 CVE-2025-24129: A type confusion issue was addressed with improved checks. This issue is fixed in iOS 18.3 and iPadO
A type confusion issue was addressed with improved checks. This issue is fixed in iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.3, visionOS 2.3. An attacker on the local network may cause an unexpected app termination.
nvd
CVE-2020-9782P3HIGHCVSS 7.5≥ unspecified, < 10.152020-10-27
CVE-2020-9782 [HIGH] CWE-22 CVE-2020-9782: A parsing issue in the handling of directory paths was addressed with improved path validation. This
A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in macOS Catalina 10.15.2, Security Update 2019-002 Mojave, and Security Update 2019-007 High Sierra. A remote attacker may be able to overwrite existing files.
nvd
CVE-2022-22643P3HIGHCVSS 7.5≥ 12.0, < 12.3≥ unspecified, < 12.32022-03-18
CVE-2022-22643 [HIGH] CVE-2022-22643: This issue was addressed with improved checks. This issue is fixed in iOS 15.4 and iPadOS 15.4, macO
This issue was addressed with improved checks. This issue is fixed in iOS 15.4 and iPadOS 15.4, macOS Monterey 12.3. A user may send audio and video in a FaceTime call without knowing that they have done so.
nvd
CVE-2022-32811P3HIGHCVSS 7.8fixed in 10.15.7≥ 11.0, < 11.6.8+5 more2022-08-24
CVE-2022-32811 [HIGH] CWE-667 CVE-2022-32811: A memory corruption vulnerability was addressed with improved locking. This issue is fixed in macOS
A memory corruption vulnerability was addressed with improved locking. This issue is fixed in macOS Monterey 12.5, macOS Big Sur 11.6.8, Security Update 2022-005 Catalina. An app may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2021-30832P3HIGHCVSS 7.8≥ 11.0, < 11.6≥ unspecified, < 11.6+1 more2021-10-19
CVE-2021-30832 [HIGH] CWE-787 CVE-2021-30832: A memory corruption issue was addressed with improved state management. This issue is fixed in Secur
A memory corruption issue was addressed with improved state management. This issue is fixed in Security Update 2021-005 Catalina, macOS Big Sur 11.6. A local attacker may be able to elevate their privileges.
nvd