Apple Macos Monterey vulnerabilities

751 known vulnerabilities affecting apple/macos_monterey.

Total CVEs
751
CISA KEV
20
actively exploited
Public exploits
4
Exploited in wild
18
Severity breakdown
CRITICAL39HIGH364MEDIUM310LOW31UNKNOWN7

Vulnerabilities

Page 16 of 38
CVE-2023-23517HIGHCVSS 8.8v12.6.32023-01-23
CVE-2023-23517 [HIGH] CVE-2023-23517: macOS Monterey 12.6.3 Apple Security Update: About the security content of macOS Monterey 12.6.3 Product: macOS Monterey Version: 12.6.3 CVE: CVE-2023-23517 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: The issue was addressed with improved memory handling.
apple
CVE-2023-23504HIGHCVSS 7.8v12.6.32023-01-23
CVE-2023-23504 [HIGH] CVE-2023-23504: macOS Monterey 12.6.3 Apple Security Update: About the security content of macOS Monterey 12.6.3 Product: macOS Monterey Version: 12.6.3 CVE: CVE-2023-23504 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: The issue was addressed with improved memory handling.
apple
CVE-2023-23516HIGHCVSS 7.8v12.6.32023-01-23
CVE-2023-23516 [HIGH] CVE-2023-23516: macOS Monterey 12.6.3 Apple Security Update: About the security content of macOS Monterey 12.6.3 Product: macOS Monterey Version: 12.6.3 CVE: CVE-2023-23516 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: The issue was addressed with improved memory handling.
apple
CVE-2023-23502MEDIUMCVSS 5.5v12.6.32023-01-23
CVE-2023-23502 [MEDIUM] CVE-2023-23502: macOS Monterey 12.6.3 Apple Security Update: About the security content of macOS Monterey 12.6.3 Product: macOS Monterey Version: 12.6.3 CVE: CVE-2023-23502 Component: Kernel Impact: An app may be able to determine kernel memory layout Description: An information disclosure issue was addressed by removing the vulnerable code.
apple
CVE-2023-23499MEDIUMCVSS 5.5v12.6.32023-01-23
CVE-2023-23499 [MEDIUM] CVE-2023-23499: macOS Monterey 12.6.3 Apple Security Update: About the security content of macOS Monterey 12.6.3 Product: macOS Monterey Version: 12.6.3 CVE: CVE-2023-23499 Component: AppleMobileFileIntegrity Impact: An app may be able to access user-sensitive data Description: This issue was addressed by enabling hardened runtime.
apple
CVE-2023-23508MEDIUMCVSS 5.5v12.6.32023-01-23
CVE-2023-23508 [MEDIUM] CVE-2023-23508: macOS Monterey 12.6.3 Apple Security Update: About the security content of macOS Monterey 12.6.3 Product: macOS Monterey Version: 12.6.3 CVE: CVE-2023-23508 Component: Windows Installer Impact: An app may be able to bypass Privacy preferences Description: The issue was addressed with improved memory handling.
apple
CVE-2023-27931MEDIUMCVSS 5.5v12.6.32023-01-23
CVE-2023-27931 [MEDIUM] CVE-2023-27931: macOS Monterey 12.6.3 Apple Security Update: About the security content of macOS Monterey 12.6.3 Product: macOS Monterey Version: 12.6.3 CVE: CVE-2023-27931 Component: TCC Impact: An app may be able to access user-sensitive data Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2023-23511MEDIUMCVSS 5.5v12.6.32023-01-23
CVE-2023-23511 [MEDIUM] CVE-2023-23511: macOS Monterey 12.6.3 Apple Security Update: About the security content of macOS Monterey 12.6.3 Product: macOS Monterey Version: 12.6.3 CVE: CVE-2023-23511 Component: Weather Impact: An app may be able to bypass Privacy preferences Description: The issue was addressed with improved memory handling.
apple
CVE-2022-35260MEDIUMCVSS 6.5v12.6.32023-01-23
CVE-2022-35260 [MEDIUM] CVE-2022-35260: macOS Monterey 12.6.3 Apple Security Update: About the security content of macOS Monterey 12.6.3 Product: macOS Monterey Version: 12.6.3 CVE: CVE-2022-35260 Component: CVE-2022-35260 Impact: Multiple issues in curl Description: Multiple issues were addressed by updating to curl version 7.85.0.
apple
CVE-2023-23505LOWCVSS 3.3v12.6.32023-01-23
CVE-2023-23505 [LOW] CVE-2023-23505: macOS Monterey 12.6.3 Apple Security Update: About the security content of macOS Monterey 12.6.3 Product: macOS Monterey Version: 12.6.3 CVE: CVE-2023-23505 Component: Screen Time Impact: An app may be able to access information about a user’s contacts Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2023-23493LOWCVSS 3.3v12.6.32023-01-23
CVE-2023-23493 [LOW] CVE-2023-23493: macOS Monterey 12.6.3 Apple Security Update: About the security content of macOS Monterey 12.6.3 Product: macOS Monterey Version: 12.6.3 CVE: CVE-2023-23493 Component: DiskArbitration Impact: An encrypted volume may be unmounted and remounted by a different user without prompting for the password Description: A logic issue was addressed with improved state management.
apple
CVE-2022-35252LOWCVSS 3.7v12.6.32023-01-23
CVE-2022-35252 [LOW] CVE-2022-35252: macOS Monterey 12.6.3 Apple Security Update: About the security content of macOS Monterey 12.6.3 Product: macOS Monterey Version: 12.6.3 CVE: CVE-2022-35252 Component: CVE-2022-35252 Impact: Mounting a maliciously crafted Samba network share may lead to arbitrary code execution Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2022-42834LOWCVSS 3.3v12.6.32023-01-23
CVE-2022-42834 [LOW] CVE-2022-42834: macOS Monterey 12.6.3 Apple Security Update: About the security content of macOS Monterey 12.6.3 Product: macOS Monterey Version: 12.6.3 CVE: CVE-2022-42834 Component: Mail Impact: An app may be able to access mail folder attachments through a temporary directory used during compression Description: An access issue was addressed with improved access restrictions.
apple
CVE-2023-23513LOWCVSS 3.7v12.6.32023-01-23
CVE-2023-23513 [LOW] CVE-2023-23513: macOS Monterey 12.6.3 Apple Security Update: About the security content of macOS Monterey 12.6.3 Product: macOS Monterey Version: 12.6.3 CVE: CVE-2023-23513 Component: CVE-2022-35252 Impact: Mounting a maliciously crafted Samba network share may lead to arbitrary code execution Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2022-42842CRITICALCVSS 9.8v12.6.22022-12-13
CVE-2022-42842 [CRITICAL] CVE-2022-42842: macOS Monterey 12.6.2 Apple Security Update: About the security content of macOS Monterey 12.6.2 Product: macOS Monterey Version: 12.6.2 CVE: CVE-2022-42842 Component: Kernel Impact: A remote user may be able to cause kernel code execution Description: The issue was addressed with improved memory handling.
apple
CVE-2022-42840HIGHCVSS 7.8v12.6.22022-12-13
CVE-2022-42840 [HIGH] CVE-2022-42840: macOS Monterey 12.6.2 Apple Security Update: About the security content of macOS Monterey 12.6.2 Product: macOS Monterey Version: 12.6.2 CVE: CVE-2022-42840 Component: PackageKit Impact: An app may be able to modify protected parts of the file system Description: A logic issue was addressed with improved state management.
apple
CVE-2022-42841HIGHCVSS 7.8v12.6.22022-12-13
CVE-2022-42841 [HIGH] CVE-2022-42841: macOS Monterey 12.6.2 Apple Security Update: About the security content of macOS Monterey 12.6.2 Product: macOS Monterey Version: 12.6.2 CVE: CVE-2022-42841 Component: Weather Impact: An app may be able to read sensitive location information Description: A logic issue was addressed with improved restrictions.
apple
CVE-2022-42861HIGHCVSS 8.8v12.6.22022-12-13
CVE-2022-42861 [HIGH] CVE-2022-42861: macOS Monterey 12.6.2 Apple Security Update: About the security content of macOS Monterey 12.6.2 Product: macOS Monterey Version: 12.6.2 CVE: CVE-2022-42861 Component: File System Impact: An app may be able to break out of its sandbox Description: This issue was addressed with improved checks.
apple
CVE-2022-42845HIGHCVSS 7.2v12.6.22022-12-13
CVE-2022-42845 [HIGH] CVE-2022-42845: macOS Monterey 12.6.2 Apple Security Update: About the security content of macOS Monterey 12.6.2 Product: macOS Monterey Version: 12.6.2 CVE: CVE-2022-42845 Component: Kernel Impact: An app with root privileges may be able to execute arbitrary code with kernel privileges Description: The issue was addressed with improved memory handling.
apple
CVE-2022-40304HIGHCVSS 7.8v12.6.22022-12-13
CVE-2022-40304 [HIGH] CVE-2022-40304: macOS Monterey 12.6.2 Apple Security Update: About the security content of macOS Monterey 12.6.2 Product: macOS Monterey Version: 12.6.2 CVE: CVE-2022-40304 Component: Kernel Impact: A remote user may be able to cause kernel code execution Description: The issue was addressed with improved memory handling.
apple