Apple macOS vulnerabilities
3,438 known vulnerabilities affecting apple/macos.
Total CVEs
3,438
CISA KEV
75
actively exploited
Public exploits
68
Exploited in wild
116
Severity breakdown
CRITICAL259HIGH1478MEDIUM1549LOW152
Vulnerabilities
Page 80 of 172
CVE-2023-40407P3HIGHCVSS 7.5fixed in 14.0≥ unspecified, < 142023-09-27
CVE-2023-40407 [HIGH] CVE-2023-40407: The issue was addressed with improved bounds checks. This issue is fixed in macOS Sonoma 14. A remot
The issue was addressed with improved bounds checks. This issue is fixed in macOS Sonoma 14. A remote attacker may be able to cause a denial-of-service.
nvd
CVE-2023-38603P3HIGHCVSS 7.5fixed in 11.7.9≥ 12.0, < 12.6.8+2 more2023-07-27
CVE-2023-38603 [HIGH] CVE-2023-38603: The issue was addressed with improved checks. This issue is fixed in iOS 16.6 and iPadOS 16.6, macOS
The issue was addressed with improved checks. This issue is fixed in iOS 16.6 and iPadOS 16.6, macOS Ventura 13.5. A remote user may be able to cause a denial-of-service.
nvd
CVE-2024-23268P3HIGHCVSS 7.8≥ 12.0.0, < 12.7.4≥ 13.0, < 13.6.5+4 more2024-03-08
CVE-2024-23268 [HIGH] CWE-74 CVE-2024-23268: An injection issue was addressed with improved input validation. This issue is fixed in macOS Monter
An injection issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5. An app may be able to elevate privileges.
nvd
CVE-2024-23274P3HIGHCVSS 7.8≥ 12.0.0, < 12.7.4≥ 13.0, < 13.6.5+4 more2024-03-08
CVE-2024-23274 [HIGH] CWE-74 CVE-2024-23274: An injection issue was addressed with improved input validation. This issue is fixed in macOS Monter
An injection issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5. An app may be able to elevate privileges.
nvd
CVE-2019-8633P3HIGHCVSS 7.5≥ unspecified, < 10.14≥ unspecified, < 12.3+1 more2020-10-27
CVE-2019-8633 [HIGH] CWE-20 CVE-2019-8633: A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Moja
A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Mojave 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra, iOS 12.3, tvOS 12.3, watchOS 5.3. An application may be able to read restricted memory.
nvd
CVE-2019-8801P3HIGHCVSS 7.8≥ unspecified, < macOS Catalina 10.15.12019-12-18
CVE-2019-8801 [HIGH] CWE-426 CVE-2019-8801: A dynamic library loading issue existed in iTunes setup. This was addressed with improved path searc
A dynamic library loading issue existed in iTunes setup. This was addressed with improved path searching. This issue is fixed in macOS Catalina 10.15.1, iTunes for Windows 12.10.2. Running the iTunes installer in an untrusted directory may result in arbitrary code execution.
nvd
CVE-2025-43204P3HIGHCVSS 7.8fixed in 26.0fixed in 262025-09-15
CVE-2025-43204 [HIGH] CWE-284 CVE-2025-43204: This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Tahoe 26. An
This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Tahoe 26. An app may be able to break out of its sandbox.
nvd
CVE-2019-8579P3HIGHCVSS 7.8≥ unspecified, < 10.142020-10-27
CVE-2019-8579 [HIGH] CWE-20 CVE-2019-8579: An input validation issue was addressed with improved memory handling. This issue is fixed in macOS
An input validation issue was addressed with improved memory handling. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra. An application may be able to gain elevated privileges.
nvd
CVE-2019-8631P3HIGHCVSS 7.5≥ unspecified, < 10.14≥ unspecified, < 12.32020-10-27
CVE-2019-8631 [HIGH] CVE-2019-8631: A logic issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.1
A logic issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra, iOS 12.3, tvOS 12.3. Users removed from an iMessage conversation may still be able to alter state.
nvd
CVE-2019-6239P3HIGHCVSS 7.8≥ unspecified, < macOS Mojave 10.14.42019-12-18
CVE-2019-6239 [HIGH] CVE-2019-6239: This issue was addressed with improved handling of file metadata. This issue is fixed in macOS Mojav
This issue was addressed with improved handling of file metadata. This issue is fixed in macOS Mojave 10.14.4. A malicious application may bypass Gatekeeper checks.
nvd
CVE-2022-42796P3HIGHCVSS 7.8fixed in 13.0≥ unspecified, < 13+1 more2022-11-01
CVE-2022-42796 [HIGH] CWE-269 CVE-2022-42796: This issue was addressed by removing the vulnerable code. This issue is fixed in iOS 15.7 and iPadOS
This issue was addressed by removing the vulnerable code. This issue is fixed in iOS 15.7 and iPadOS 15.7, macOS Ventura 13. An app may be able to gain elevated privileges.
nvd
CVE-2019-8564P3HIGHCVSS 7.5≥ unspecified, < 10.142020-10-27
CVE-2019-8564 [HIGH] CVE-2019-8564: A logic issue was addressed with improved validation. This issue is fixed in macOS Mojave 10.14.4, S
A logic issue was addressed with improved validation. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra. An attacker in a privileged network position can modify driver state.
nvd
CVE-2024-44277P3HIGHCVSS 7.8fixed in 15.12024-10-28
CVE-2024-44277 [HIGH] CWE-787 CVE-2024-44277: The issue was addressed with improved memory handling. This issue is fixed in iOS 18.1 and iPadOS 18
The issue was addressed with improved memory handling. This issue is fixed in iOS 18.1 and iPadOS 18.1, macOS Sequoia 15.1, tvOS 18.1, visionOS 2.1. An app may be able to cause unexpected system termination or corrupt kernel memory.
nvd
CVE-2022-32794P3HIGHCVSS 7.8≥ 11.0, < 11.6.6≥ 12.0.0, < 12.4+3 more2022-11-01
CVE-2022-32794 [HIGH] CWE-269 CVE-2022-32794: A logic issue was addressed with improved state management. This issue is fixed in Security Update 2
A logic issue was addressed with improved state management. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. An app may be able to gain elevated privileges.
nvd
CVE-2024-27843P3HIGHCVSS 7.8≥ 12.0, < 12.7.5≥ 13.0, < 13.6.7+4 more2024-05-14
CVE-2024-27843 [HIGH] CVE-2024-27843: A logic issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7.5, macO
A logic issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7.5, macOS Sonoma 14.5, macOS Ventura 13.6.7. An app may be able to elevate privileges.
nvd
CVE-2023-28215P3HIGHCVSS 7.8≥ 13.0, < 13.3≥ unspecified, < 13.32023-09-06
CVE-2023-28215 [HIGH] CWE-120 CVE-2023-28215: A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ve
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3. An app may be able to cause unexpected system termination or write kernel memory.
nvd
CVE-2023-28214P3HIGHCVSS 7.8≥ 13.0, < 13.3≥ unspecified, < 13.32023-09-06
CVE-2023-28214 [HIGH] CWE-120 CVE-2023-28214: A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ve
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3. An app may be able to cause unexpected system termination or write kernel memory.
nvd
CVE-2023-28211P3HIGHCVSS 7.8≥ 13.0, < 13.3≥ unspecified, < 13.32023-09-06
CVE-2023-28211 [HIGH] CWE-120 CVE-2023-28211: A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ve
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3. An app may be able to cause unexpected system termination or write kernel memory.
nvd
CVE-2023-28210P3HIGHCVSS 7.8≥ 13.0, < 13.3≥ unspecified, < 13.32023-09-06
CVE-2023-28210 [HIGH] CWE-120 CVE-2023-28210: A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ve
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3. An app may be able to cause unexpected system termination or write kernel memory.
nvd
CVE-2023-32356P3HIGHCVSS 7.8≥ 13.0, < 13.3≥ unspecified, < 13.32023-09-06
CVE-2023-32356 [HIGH] CWE-120 CVE-2023-32356: A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ve
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3. An app may be able to cause unexpected system termination or write kernel memory.
nvd