cbcvebase.

Apple Macos Sequoia vulnerabilities

804 known vulnerabilities affecting apple/macos_sequoia.

Total CVEs
804
CISA KEV
10
actively exploited
Public exploits
5
Exploited in wild
17
Severity breakdown
CRITICAL93HIGH210MEDIUM461LOW40

Vulnerabilities

Page 38 of 41
CVE-2025-30439P4MEDIUMCVSS 4.6v15.42025-03-31
CVE-2025-30439 [MEDIUM] CVE-2025-30439: macOS Sequoia 15.4 Apple Security Update: About the security content of macOS Sequoia 15.4 Product: macOS Sequoia Version: 15.4 CVE: CVE-2025-30439 Component: Focus Impact: An attacker with physical access to a locked device may be able to view sensitive user information Description: The issue was addressed with improved checks.
apple
CVE-2024-44137P4MEDIUMCVSS 4.6v152024-09-16
CVE-2024-44137 [MEDIUM] CVE-2024-44137: macOS Sequoia 15 Apple Security Update: About the security content of macOS Sequoia 15 Product: macOS Sequoia Version: 15 CVE: CVE-2024-44137 Component: Screen Capture Impact: An attacker with physical access may be able to share items from the lock screen Description: The issue was addressed with improved checks.
apple
CVE-2025-43259P4MEDIUMCVSS 4.6v15.62025-07-29
CVE-2025-43259 [MEDIUM] CVE-2025-43259: macOS Sequoia 15.6 Apple Security Update: About the security content of macOS Sequoia 15.6 Product: macOS Sequoia Version: 15.6 CVE: CVE-2025-43259 Component: WindowServer Impact: An attacker with physical access to a locked device may be able to view sensitive user information Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2026-20662P4MEDIUMCVSS 4.6v15.7.42026-02-11
CVE-2026-20662 [MEDIUM] CVE-2026-20662: macOS Sequoia 15.7.4 Apple Security Update: About the security content of macOS Sequoia 15.7.4 Product: macOS Sequoia Version: 15.7.4 CVE: CVE-2026-20662 Component: Siri Impact: An attacker with physical access to a locked device may be able to view sensitive user information Description: An authorization issue was addressed with improved state management.
apple
CVE-2025-24128P4MEDIUMCVSS 4.3v15.32025-01-27
CVE-2025-24128 [MEDIUM] CVE-2025-24128: macOS Sequoia 15.3 Apple Security Update: About the security content of macOS Sequoia 15.3 Product: macOS Sequoia Version: 15.3 CVE: CVE-2025-24128 Component: Safari Impact: Visiting a malicious website may lead to address bar spoofing Description: The issue was addressed by adding additional logic.
apple
CVE-2025-24242P4MEDIUMCVSS 4.4v15.42025-03-31
CVE-2025-24242 [MEDIUM] CVE-2025-24242: macOS Sequoia 15.4 Apple Security Update: About the security content of macOS Sequoia 15.4 Product: macOS Sequoia Version: 15.4 CVE: CVE-2025-24242 Component: System Settings Impact: An app with root privileges may be able to access private information Description: This issue was addressed with improved handling of symlinks.
apple
CVE-2024-44130P4MEDIUMCVSS 4.4v152024-09-16
CVE-2024-44130 [MEDIUM] CVE-2024-44130: macOS Sequoia 15 Apple Security Update: About the security content of macOS Sequoia 15 Product: macOS Sequoia Version: 15 CVE: CVE-2024-44130 Component: CVE-2024-44130
apple
CVE-2024-40825P4MEDIUMCVSS 4.4v152024-09-16
CVE-2024-40825 [MEDIUM] CVE-2024-40825: macOS Sequoia 15 Apple Security Update: About the security content of macOS Sequoia 15 Product: macOS Sequoia Version: 15 CVE: CVE-2024-40825 Component: APFS Impact: A malicious app with root privileges may be able to modify the contents of system files Description: The issue was addressed with improved checks.
apple
CVE-2025-43310P4MEDIUMCVSS 4.4v15.72025-09-15
CVE-2025-43310 [MEDIUM] CVE-2025-43310: macOS Sequoia 15.7 Apple Security Update: About the security content of macOS Sequoia 15.7 Product: macOS Sequoia Version: 15.7 CVE: CVE-2025-43310 Component: WindowServer Impact: An app may be able to trick a user into copying sensitive data to the pasteboard Description: A configuration issue was addressed with additional restrictions.
apple
CVE-2024-54568P4MEDIUMCVSS 4.3v15.22024-12-11
CVE-2024-54568 [MEDIUM] CVE-2024-54568: macOS Sequoia 15.2 Apple Security Update: About the security content of macOS Sequoia 15.2 Product: macOS Sequoia Version: 15.2 CVE: CVE-2024-54568 Component: ATS Impact: Parsing a maliciously crafted file may lead to an unexpected app termination Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43374P4MEDIUMCVSS 4.3v15.52025-05-12
CVE-2025-43374 [MEDIUM] CVE-2025-43374: macOS Sequoia 15.5 Apple Security Update: About the security content of macOS Sequoia 15.5 Product: macOS Sequoia Version: 15.5 CVE: CVE-2025-43374 Component: Wi-Fi Impact: An attacker in physical proximity may be able to cause an out-of-bounds read in kernel memory Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2025-43265P4MEDIUMCVSS 4.0v15.62025-07-29
CVE-2025-43265 [MEDIUM] CVE-2025-43265: macOS Sequoia 15.6 Apple Security Update: About the security content of macOS Sequoia 15.6 Product: macOS Sequoia Version: 15.6 CVE: CVE-2025-43265 Component: WebKit Impact: Processing maliciously crafted web content may disclose internal states of the app Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2024-44231P4MEDIUMCVSS 4.6v15.12024-10-28
CVE-2024-44231 [MEDIUM] CVE-2024-44231: macOS Sequoia 15.1 Apple Security Update: About the security content of macOS Sequoia 15.1 Product: macOS Sequoia Version: 15.1 CVE: CVE-2024-44231 Component: Login Window Impact: A person with physical access to a Mac may be able to bypass Login Window during a software update Description: This issue was addressed through improved state management.
apple
CVE-2024-44223P4MEDIUMCVSS 4.6v15.12024-10-28
CVE-2024-44223 [MEDIUM] CVE-2024-44223: macOS Sequoia 15.1 Apple Security Update: About the security content of macOS Sequoia 15.1 Product: macOS Sequoia Version: 15.1 CVE: CVE-2024-44223 Component: Login Window Impact: An attacker with physical access to a Mac may be able to view protected content from the Login Window Description: This issue was addressed through improved state management.
apple
CVE-2025-24136P4MEDIUMCVSS 4.4v15.32025-01-27
CVE-2025-24136 [MEDIUM] CVE-2025-24136: macOS Sequoia 15.3 Apple Security Update: About the security content of macOS Sequoia 15.3 Product: macOS Sequoia Version: 15.3 CVE: CVE-2025-24136 Component: Login Window Impact: A malicious app may be able to create symlinks to protected regions of the disk Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2025-24116P4MEDIUMCVSS 4.4v15.32025-01-27
CVE-2025-24116 [MEDIUM] CVE-2025-24116: macOS Sequoia 15.3 Apple Security Update: About the security content of macOS Sequoia 15.3 Product: macOS Sequoia Version: 15.3 CVE: CVE-2025-24116 Component: LaunchServices Impact: An app may be able to bypass Privacy preferences Description: An access issue was addressed with additional sandbox restrictions.
apple
CVE-2025-43274P4MEDIUMCVSS 4.4v15.62025-07-29
CVE-2025-43274 [MEDIUM] CVE-2025-43274: macOS Sequoia 15.6 Apple Security Update: About the security content of macOS Sequoia 15.6 Product: macOS Sequoia Version: 15.6 CVE: CVE-2025-43274 Component: RemoteViewServices Impact: A sandboxed process may be able to circumvent sandbox restrictions Description: A privacy issue was addressed by removing the vulnerable code.
apple
CVE-2026-20609P4MEDIUMCVSS 4.4v15.7.42026-02-11
CVE-2026-20609 [MEDIUM] CVE-2026-20609: macOS Sequoia 15.7.4 Apple Security Update: About the security content of macOS Sequoia 15.7.4 Product: macOS Sequoia Version: 15.7.4 CVE: CVE-2026-20609 Component: CoreMedia Impact: Processing a maliciously crafted file may lead to a denial-of-service or potentially disclose memory contents Description: The issue was addressed with improved memory handling.
apple
CVE-2025-31266P4MEDIUMCVSS 4.3v15.52025-05-12
CVE-2025-31266 [MEDIUM] CVE-2025-31266: macOS Sequoia 15.5 Apple Security Update: About the security content of macOS Sequoia 15.5 Product: macOS Sequoia Version: 15.5 CVE: CVE-2025-31266 Component: Safari Impact: A website may be able to spoof the domain name in the title of a pop-up window Description: A spoofing issue was addressed with improved truncation when displaying the fully qualified domain name
apple
CVE-2025-43226P4MEDIUMCVSS 4.0v15.62025-07-29
CVE-2025-43226 [MEDIUM] CVE-2025-43226: macOS Sequoia 15.6 Apple Security Update: About the security content of macOS Sequoia 15.6 Product: macOS Sequoia Version: 15.6 CVE: CVE-2025-43226 Component: CVE-2025-43226
apple
Apple Macos Sequoia vulnerabilities | cvebase