Apple macOS vulnerabilities
3,135 known vulnerabilities affecting apple/macos.
Total CVEs
3,135
CISA KEV
75
actively exploited
Public exploits
44
Exploited in wild
61
Severity breakdown
CRITICAL203HIGH1362MEDIUM1421LOW149
Vulnerabilities
Page 82 of 157
CVE-2023-32404MEDIUMCVSS 5.5≥ 13.0, < 13.4≥ unspecified, < 13.42023-06-23
CVE-2023-32404 [MEDIUM] CWE-276 CVE-2023-32404: This issue was addressed with improved entitlements. This issue is fixed in iOS 16.5 and iPadOS 16.5
This issue was addressed with improved entitlements. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5, macOS Ventura 13.4. An app may be able to bypass Privacy preferences.
nvd
CVE-2023-32360MEDIUMCVSS 5.5≥ 11.0, < 11.7.7≥ 12.0.0, < 12.6.6+4 more2023-06-23
CVE-2023-32360 [MEDIUM] CWE-125 CVE-2023-32360: An authentication issue was addressed with improved state management. This issue is fixed in macOS B
An authentication issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.7.7, macOS Monterey 12.6.6, macOS Ventura 13.4. An unauthenticated user may be able to access recently printed documents.
nvd
CVE-2023-32395MEDIUMCVSS 5.5≥ 11.0, < 11.7.7≥ 12.0.0, < 12.6.6+4 more2023-06-23
CVE-2023-32395 [MEDIUM] CWE-787 CVE-2023-32395: A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.
A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.7.7, macOS Monterey 12.6.6, macOS Ventura 13.4. An app may be able to modify protected parts of the file system.
nvd
CVE-2023-32389MEDIUMCVSS 5.5≥ 13.0, < 13.4≥ unspecified, < 13.42023-06-23
CVE-2023-32389 [MEDIUM] CWE-125 CVE-2023-32389: This issue was addressed with improved redaction of sensitive information. This issue is fixed in i
This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5, tvOS 16.5, macOS Ventura 13.4. An app may be able to disclose kernel memory.
nvd
CVE-2022-42860MEDIUMCVSS 5.5≥ 11.0.0, < 11.7.1≥ 12.0.0, < 12.6.1+3 more2023-06-23
CVE-2022-42860 [MEDIUM] CWE-346 CVE-2022-42860: This issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed i
This issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in macOS Monterey 12.6.1, macOS Big Sur 11.7.1, macOS Ventura 13. An app may be able to modify protected parts of the file system
nvd
CVE-2022-46718MEDIUMCVSS 5.5≥ 11.0.0, < 11.7.2≥ 12.0.0, < 12.6.2+5 more2023-06-23
CVE-2022-46718 [MEDIUM] CWE-346 CVE-2022-46718: A logic issue was addressed with improved restrictions. This issue is fixed in iOS 15.7.2 and iPadOS
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 15.7.2 and iPadOS 15.7.2, macOS Ventura 13.1, macOS Big Sur 11.7.2, macOS Monterey 12.6.2. An app may be able to read sensitive location information
nvd
CVE-2023-32410MEDIUMCVSS 5.5≥ 11.0, < 11.7.7≥ 12.0, < 12.6.6+4 more2023-06-23
CVE-2023-32410 [MEDIUM] CWE-125 CVE-2023-32410: An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 15.7.
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 15.7.6 and iPadOS 15.7.6, macOS Big Sur 11.7.7, macOS Monterey 12.6.6, macOS Ventura 13.4. An app may be able to leak sensitive kernel state.
nvd
CVE-2023-32422MEDIUMCVSS 5.5≥ 13.0, < 13.4≥ unspecified, < 13.42023-06-23
CVE-2023-32422 [MEDIUM] CVE-2023-32422: This issue was addressed by adding additional SQLite logging restrictions. This issue is fixed in iO
This issue was addressed by adding additional SQLite logging restrictions. This issue is fixed in iOS 16.5 and iPadOS 16.5, tvOS 16.5, macOS Ventura 13.4. An app may be able to bypass Privacy preferences.
nvd
CVE-2023-32403MEDIUMCVSS 5.5≥ 11.0, < 11.7.7≥ 12.0, < 12.6.6+4 more2023-06-23
CVE-2023-32403 [MEDIUM] CWE-125 CVE-2023-32403: This issue was addressed with improved redaction of sensitive information. This issue is fixed in w
This issue was addressed with improved redaction of sensitive information. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 and iPadOS 15.7.6, macOS Big Sur 11.7.7, macOS Monterey 12.6.6, iOS 16.5 and iPadOS 16.5. An app may be able to read sensitive location information.
nvd
CVE-2023-32392MEDIUMCVSS 5.5≥ 11.0, < 11.7.7≥ 12.0.0, < 12.6.6+4 more2023-06-23
CVE-2023-32392 [MEDIUM] CWE-532 CVE-2023-32392: A privacy issue was addressed with improved private data redaction for log entries. This issue is fi
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, macOS Big Sur 11.7.7, macOS Monterey 12.6.6, iOS 16.5 and iPadOS 16.5. An app may be able to read sensitive location information.
nvd
CVE-2023-32382MEDIUMCVSS 5.5≥ 11.0, < 11.7.7≥ 12.0.0, < 12.6.6+4 more2023-06-23
CVE-2023-32382 [MEDIUM] CWE-125 CVE-2023-32382: An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.7.7, macOS Monterey 12.6.6, macOS Ventura 13.4. Processing a 3D model may result in disclosure of process memory.
nvd
CVE-2023-32352MEDIUMCVSS 5.5≥ 11.0, < 11.7.7≥ 12.0.0, < 12.6.6+4 more2023-06-23
CVE-2023-32352 [MEDIUM] CWE-639 CVE-2023-32352: A logic issue was addressed with improved checks. This issue is fixed in watchOS 9.5, macOS Ventura
A logic issue was addressed with improved checks. This issue is fixed in watchOS 9.5, macOS Ventura 13.4, macOS Big Sur 11.7.7, macOS Monterey 12.6.6, iOS 16.5 and iPadOS 16.5. An app may bypass Gatekeeper checks.
nvd
CVE-2023-32408MEDIUMCVSS 5.5≥ 12.0, < 12.6.6≥ 13.0, < 13.4+2 more2023-06-23
CVE-2023-32408 [MEDIUM] CVE-2023-32408: The issue was addressed with improved handling of caches. This issue is fixed in watchOS 9.5, tvOS 1
The issue was addressed with improved handling of caches. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 and iPadOS 15.7.6, macOS Monterey 12.6.6, iOS 16.5 and iPadOS 16.5. An app may be able to read sensitive location information.
nvd
CVE-2023-28202MEDIUMCVSS 5.5≥ 13.0, < 13.4≥ unspecified, < 13.42023-06-23
CVE-2023-28202 [MEDIUM] CWE-640 CVE-2023-28202: This issue was addressed with improved state management. This issue is fixed in iOS 16.5 and iPadOS
This issue was addressed with improved state management. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5, tvOS 16.5, macOS Ventura 13.4. An app firewall setting may not take effect after exiting the Settings app.
nvd
CVE-2023-32391MEDIUMCVSS 4.6≥ 13.0, < 13.4≥ unspecified, < 13.42023-06-23
CVE-2023-32391 [MEDIUM] CWE-125 CVE-2023-32391: The issue was addressed with improved checks. This issue is fixed in iOS 15.7.6 and iPadOS 15.7.6, w
The issue was addressed with improved checks. This issue is fixed in iOS 15.7.6 and iPadOS 15.7.6, watchOS 9.5, iOS 16.5 and iPadOS 16.5, macOS Ventura 13.4. A shortcut may be able to use sensitive data with certain actions without prompting the user.
nvd
CVE-2023-27940MEDIUMCVSS 6.3≥ 12.0.0, < 12.6.6≥ 13.0, < 13.4+2 more2023-06-23
CVE-2023-27940 [MEDIUM] CVE-2023-27940: The issue was addressed with additional permissions checks. This issue is fixed in iOS 15.7.6 and iP
The issue was addressed with additional permissions checks. This issue is fixed in iOS 15.7.6 and iPadOS 15.7.6, macOS Monterey 12.6.6, macOS Ventura 13.4. A sandboxed app may be able to observe system-wide network connections.
nvd
CVE-2023-32411MEDIUMCVSS 5.5≥ 11.0, < 11.7.7≥ 12.0, < 12.6.6+4 more2023-06-23
CVE-2023-32411 [MEDIUM] CVE-2023-32411: This issue was addressed with improved entitlements. This issue is fixed in tvOS 16.5, macOS Ventura
This issue was addressed with improved entitlements. This issue is fixed in tvOS 16.5, macOS Ventura 13.4, macOS Big Sur 11.7.7, macOS Monterey 12.6.6, iOS 16.5 and iPadOS 16.5. An app may be able to bypass Privacy preferences.
nvd
CVE-2023-32415MEDIUMCVSS 5.5≥ 13.0, < 13.4≥ unspecified, < 13.42023-06-23
CVE-2023-32415 [MEDIUM] CWE-922 CVE-2023-32415: This issue was addressed with improved redaction of sensitive information. This issue is fixed in i
This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 16.5 and iPadOS 16.5, tvOS 16.5, macOS Ventura 13.4. An app may be able to read sensitive location information.
nvd
CVE-2023-32400MEDIUMCVSS 5.5≥ 13.0, < 13.4≥ unspecified, < 13.42023-06-23
CVE-2023-32400 [MEDIUM] CWE-281 CVE-2023-32400: This issue was addressed with improved checks. This issue is fixed in iOS 16.5 and iPadOS 16.5, watc
This issue was addressed with improved checks. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5, macOS Ventura 13.4. Entitlements and privacy permissions granted to this app may be used by a malicious app.
nvd
CVE-2023-32407MEDIUMCVSS 5.5≥ 11.0, < 11.7.7≥ 12.0, < 12.6.6+4 more2023-06-23
CVE-2023-32407 [MEDIUM] CWE-276 CVE-2023-32407: A logic issue was addressed with improved state management. This issue is fixed in watchOS 9.5, tvOS
A logic issue was addressed with improved state management. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 and iPadOS 15.7.6, macOS Big Sur 11.7.7, macOS Monterey 12.6.6, iOS 16.5 and iPadOS 16.5. An app may be able to bypass Privacy preferences.
nvd