Apple Macos Sequoia vulnerabilities
804 known vulnerabilities affecting apple/macos_sequoia.
Total CVEs
804
CISA KEV
10
actively exploited
Public exploits
5
Exploited in wild
17
Severity breakdown
CRITICAL93HIGH210MEDIUM461LOW40
Vulnerabilities
Page 3 of 41
CVE-2024-54505P3HIGHCVSS 8.8v15.22024-12-11
CVE-2024-54505 [HIGH] CVE-2024-54505: macOS Sequoia 15.2
Apple Security Update: About the security content of macOS Sequoia 15.2
Product: macOS Sequoia
Version: 15.2
CVE: CVE-2024-54505
Component: WebKit
Impact: Processing maliciously crafted web content may lead to memory corruption
Description: A type confusion issue was addressed with improved memory handling.
apple
CVE-2025-31273P3HIGHCVSS 8.8v15.62025-07-29
CVE-2025-31273 [HIGH] CVE-2025-31273: macOS Sequoia 15.6
Apple Security Update: About the security content of macOS Sequoia 15.6
Product: macOS Sequoia
Version: 15.6
CVE: CVE-2025-31273
Component: WebKit
Impact: Processing maliciously crafted web content may lead to memory corruption
Description: The issue was addressed with improved memory handling.
apple
CVE-2024-54543P3HIGHCVSS 8.8v15.22024-12-11
CVE-2024-54543 [HIGH] CVE-2024-54543: macOS Sequoia 15.2
Apple Security Update: About the security content of macOS Sequoia 15.2
Product: macOS Sequoia
Version: 15.2
CVE: CVE-2024-54543
Component: WebKit
Impact: Processing maliciously crafted web content may lead to memory corruption
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43202P3HIGHCVSS 8.8v15.62025-07-29
CVE-2025-43202 [HIGH] CVE-2025-43202: macOS Sequoia 15.6
Apple Security Update: About the security content of macOS Sequoia 15.6
Product: macOS Sequoia
Version: 15.6
CVE: CVE-2025-43202
Component: Kernel
Impact: An app may be able to cause unexpected system termination
Description: A double free issue was addressed with improved memory management.
apple
CVE-2024-38477P3HIGHCVSS 7.5v15.12024-10-28
CVE-2024-38477 [HIGH] CVE-2024-38477: macOS Sequoia 15.1
Apple Security Update: About the security content of macOS Sequoia 15.1
Product: macOS Sequoia
Version: 15.1
CVE: CVE-2024-38477
Component: CVE-2024-38477
apple
CVE-2025-24211P3CRITICALCVSS 9.8v15.42025-03-31
CVE-2025-24211 [CRITICAL] CVE-2025-24211: macOS Sequoia 15.4
Apple Security Update: About the security content of macOS Sequoia 15.4
Product: macOS Sequoia
Version: 15.4
CVE: CVE-2025-24211
Component: CoreMedia
Impact: Processing a maliciously crafted video file may lead to unexpected app termination or corrupt process memory
Description: This issue was addressed with improved memory handling.
apple
CVE-2025-43209P3CRITICALCVSS 9.8v15.62025-07-29
CVE-2025-43209 [CRITICAL] CVE-2025-43209: macOS Sequoia 15.6
Apple Security Update: About the security content of macOS Sequoia 15.6
Product: macOS Sequoia
Version: 15.6
CVE: CVE-2025-43209
Component: ICU
Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash
Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2024-54542P3CRITICALCVSS 9.1v15.22024-12-11
CVE-2024-54542 [CRITICAL] CVE-2024-54542: macOS Sequoia 15.2
Apple Security Update: About the security content of macOS Sequoia 15.2
Product: macOS Sequoia
Version: 15.2
CVE: CVE-2024-54542
Component: Safari Private Browsing
Impact: Private Browsing tabs may be accessed without authentication
Description: An authentication issue was addressed with improved state management.
apple
CVE-2025-24196P3HIGHCVSS 8.8v15.42025-03-31
CVE-2025-24196 [HIGH] CVE-2025-24196: macOS Sequoia 15.4
Apple Security Update: About the security content of macOS Sequoia 15.4
Product: macOS Sequoia
Version: 15.4
CVE: CVE-2025-24196
Component: Kernel
Impact: An attacker with user privileges may be able to read kernel memory
Description: A type confusion issue was addressed with improved memory handling.
apple
CVE-2025-31204P3HIGHCVSS 8.8v15.52025-05-12
CVE-2025-31204 [HIGH] CVE-2025-31204: macOS Sequoia 15.5
Apple Security Update: About the security content of macOS Sequoia 15.5
Product: macOS Sequoia
Version: 15.5
CVE: CVE-2025-31204
Component: WebKit
Impact: Processing maliciously crafted web content may lead to memory corruption
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-24189P3HIGHCVSS 8.8v15.32025-01-27
CVE-2025-24189 [HIGH] CVE-2025-24189: macOS Sequoia 15.3
Apple Security Update: About the security content of macOS Sequoia 15.3
Product: macOS Sequoia
Version: 15.3
CVE: CVE-2025-24189
Component: WebKit
Impact: Processing maliciously crafted web content may lead to memory corruption
Description: The issue was addressed with improved checks.
apple
CVE-2025-43264P3HIGHCVSS 8.8v15.62025-07-29
CVE-2025-43264 [HIGH] CVE-2025-43264: macOS Sequoia 15.6
Apple Security Update: About the security content of macOS Sequoia 15.6
Product: macOS Sequoia
Version: 15.6
CVE: CVE-2025-43264
Component: Model I/O
Impact: Processing a maliciously crafted image may corrupt process memory
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-24237P3CRITICALCVSS 9.8v15.42025-03-31
CVE-2025-24237 [CRITICAL] CVE-2025-24237: macOS Sequoia 15.4
Apple Security Update: About the security content of macOS Sequoia 15.4
Product: macOS Sequoia
Version: 15.4
CVE: CVE-2025-24237
Component: BiometricKit
Impact: An app may be able to cause unexpected system termination
Description: A buffer overflow was addressed with improved bounds checking.
apple
CVE-2025-24154P3CRITICALCVSS 9.1v15.32025-01-27
CVE-2025-24154 [CRITICAL] CVE-2025-24154: macOS Sequoia 15.3
Apple Security Update: About the security content of macOS Sequoia 15.3
Product: macOS Sequoia
Version: 15.3
CVE: CVE-2025-24154
Component: WebContentFilter
Impact: An attacker may be able to cause unexpected system termination or corrupt kernel memory
Description: An out-of-bounds write was addressed with improved input validation.
apple
CVE-2025-24254P3HIGHCVSS 8.8v15.42025-03-31
CVE-2025-24254 [HIGH] CVE-2025-24254: macOS Sequoia 15.4
Apple Security Update: About the security content of macOS Sequoia 15.4
Product: macOS Sequoia
Version: 15.4
CVE: CVE-2025-24254
Component: Software Update
Impact: A user may be able to elevate privileges
Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2025-43219P3HIGHCVSS 8.8v15.62025-07-29
CVE-2025-43219 [HIGH] CVE-2025-43219: macOS Sequoia 15.6
Apple Security Update: About the security content of macOS Sequoia 15.6
Product: macOS Sequoia
Version: 15.6
CVE: CVE-2025-43219
Component: Model I/O
Impact: Processing a maliciously crafted image may corrupt process memory
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-30426P3CRITICALCVSS 9.8v15.42025-03-31
CVE-2025-30426 [CRITICAL] CVE-2025-30426: macOS Sequoia 15.4
Apple Security Update: About the security content of macOS Sequoia 15.4
Product: macOS Sequoia
Version: 15.4
CVE: CVE-2025-30426
Component: NetworkExtension
Impact: An app may be able to enumerate a user's installed apps
Description: This issue was addressed with additional entitlement checks.
apple
CVE-2025-31194P3CRITICALCVSS 9.8v15.42025-03-31
CVE-2025-31194 [CRITICAL] CVE-2025-31194: macOS Sequoia 15.4
Apple Security Update: About the security content of macOS Sequoia 15.4
Product: macOS Sequoia
Version: 15.4
CVE: CVE-2025-31194
Component: Shortcuts
Impact: A Shortcut may run with admin privileges without authentication
Description: An authentication issue was addressed with improved state management.
apple
CVE-2025-43359P3CRITICALCVSS 9.8v15.72025-09-15
CVE-2025-43359 [CRITICAL] CVE-2025-43359: macOS Sequoia 15.7
Apple Security Update: About the security content of macOS Sequoia 15.7
Product: macOS Sequoia
Version: 15.7
CVE: CVE-2025-43359
Component: Kernel
Impact: A UDP server socket bound to a local interface may become bound to all interfaces
Description: A logic issue was addressed with improved state management.
apple
CVE-2025-24245P3CRITICALCVSS 9.8v15.42025-03-31
CVE-2025-24245 [CRITICAL] CVE-2025-24245: macOS Sequoia 15.4
Apple Security Update: About the security content of macOS Sequoia 15.4
Product: macOS Sequoia
Version: 15.4
CVE: CVE-2025-24245
Component: Authentication Services
Impact: A malicious app may be able to access a user's saved passwords
Description: This issue was addressed by adding a delay between verification code attempts.
apple