Apple Macos Monterey vulnerabilities

751 known vulnerabilities affecting apple/macos_monterey.

Total CVEs
751
CISA KEV
20
actively exploited
Public exploits
4
Exploited in wild
18
Severity breakdown
CRITICAL39HIGH364MEDIUM310LOW31UNKNOWN7

Vulnerabilities

Page 6 of 38
CVE-2023-42931HIGHCVSS 7.8v12.7.22023-12-11
CVE-2023-42931 [HIGH] CVE-2023-42931: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2023-42931 Component: DiskArbitration Impact: A process may gain admin privileges without proper authentication Description: The issue was addressed with improved checks.
apple
CVE-2023-42892HIGHCVSS 7.8v12.7.22023-12-11
CVE-2023-42892 [HIGH] CVE-2023-42892: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2023-42892 Component: FileURL Impact: A local attacker may be able to elevate their privileges Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-42886HIGHCVSS 7.8v12.7.22023-12-11
CVE-2023-42886 [HIGH] CVE-2023-42886: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2023-42886 Component: CoreServices Impact: A user may be able to cause unexpected app termination or arbitrary code execution Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2023-5344HIGHCVSS 7.5v12.7.22023-12-11
CVE-2023-5344 [HIGH] CVE-2023-5344: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2023-5344 Component: CVE-2023-5344
apple
CVE-2023-42899HIGHCVSS 7.8v12.7.22023-12-11
CVE-2023-42899 [HIGH] CVE-2023-42899: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2023-42899 Component: ImageIO Impact: Processing an image may lead to arbitrary code execution Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42896MEDIUMCVSS 5.5v12.7.22023-12-11
CVE-2023-42896 [MEDIUM] CVE-2023-42896: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2023-42896 Component: Assets Impact: An app may be able to modify protected parts of the file system Description: An issue was addressed with improved handling of temporary files.
apple
CVE-2023-42930MEDIUMCVSS 5.5v12.7.22023-12-11
CVE-2023-42930 [MEDIUM] CVE-2023-42930: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2023-42930 Component: Shell Impact: An app may be able to modify protected parts of the file system Description: This issue was addressed with improved checks.
apple
CVE-2020-19187MEDIUMCVSS 6.5v12.7.22023-12-11
CVE-2020-19187 [MEDIUM] CVE-2020-19187: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2020-19187 Component: CVE-2020-19187
apple
CVE-2023-42919MEDIUMCVSS 5.5v12.7.22023-12-11
CVE-2023-42919 [MEDIUM] CVE-2023-42919: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2023-42919 Component: Accounts Impact: An app may be able to access sensitive user data Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2023-42914MEDIUMCVSS 6.3v12.7.22023-12-11
CVE-2023-42914 [MEDIUM] CVE-2023-42914: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2023-42914 Component: Kernel Impact: An app may be able to break out of its sandbox Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42893MEDIUMCVSS 5.5v12.7.22023-12-11
CVE-2023-42893 [MEDIUM] CVE-2023-42893: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2023-42893 Component: CVE-2023-42893
apple
CVE-2020-19186MEDIUMCVSS 6.5v12.7.22023-12-11
CVE-2020-19186 [MEDIUM] CVE-2020-19186: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2020-19186 Component: CVE-2020-19186
apple
CVE-2023-42894MEDIUMCVSS 5.5v12.7.22023-12-11
CVE-2023-42894 [MEDIUM] CVE-2023-42894: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2023-42894 Component: AppleEvents Impact: An app may be able to access information about a user's contacts Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2023-41989MEDIUMCVSS 6.8v12.7.22023-12-11
CVE-2023-41989 [MEDIUM] CVE-2023-41989: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2023-41989 Component: Emoji Impact: An attacker may be able to execute arbitrary code as root from the Lock Screen Description: The issue was addressed by restricting options offered on a locked device.
apple
CVE-2023-3618MEDIUMCVSS 6.5v12.7.22023-12-11
CVE-2023-3618 [MEDIUM] CVE-2023-3618: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2023-3618 Component: CVE-2023-3618 Impact: A remote user may be able to cause unexpected app termination or arbitrary code execution Description: This issue was addressed with improved checks.
apple
CVE-2023-42836MEDIUMCVSS 5.3v12.7.22023-12-11
CVE-2023-42836 [MEDIUM] CVE-2023-42836: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2023-42836 Component: Sandbox Impact: An attacker may be able to access connected network volumes mounted in the home directory Description: A logic issue was addressed with improved checks.
apple
CVE-2020-19190MEDIUMCVSS 6.5v12.7.22023-12-11
CVE-2020-19190 [MEDIUM] CVE-2020-19190: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2020-19190 Component: CVE-2020-19190 Impact: An app may be able to execute arbitrary code out of its sandbox or with certain elevated privileges Description: An access issue was addressed with improvements to the sandbox.
apple
CVE-2023-42922MEDIUMCVSS 5.5v12.7.22023-12-11
CVE-2023-42922 [MEDIUM] CVE-2023-42922: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2023-42922 Component: Find My Impact: An app may be able to read sensitive location information Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2023-42838MEDIUMCVSS 6.5v12.7.22023-12-11
CVE-2023-42838 [MEDIUM] CVE-2023-42838: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2023-42838 Component: CVE-2020-19190 Impact: An app may be able to execute arbitrary code out of its sandbox or with certain elevated privileges Description: An access issue was addressed with improvements to the sandbox.
apple
CVE-2023-42834MEDIUMCVSS 5.5v12.7.22023-12-11
CVE-2023-42834 [MEDIUM] CVE-2023-42834: macOS Monterey 12.7.2 Apple Security Update: About the security content of macOS Monterey 12.7.2 Product: macOS Monterey Version: 12.7.2 CVE: CVE-2023-42834 Component: Find My Impact: An app may be able to access sensitive user data Description: A privacy issue was addressed with improved handling of files.
apple