Apple Macos Sequoia vulnerabilities
804 known vulnerabilities affecting apple/macos_sequoia.
Total CVEs
804
CISA KEV
10
actively exploited
Public exploits
5
Exploited in wild
17
Severity breakdown
CRITICAL93HIGH210MEDIUM461LOW40
Vulnerabilities
Page 38 of 41
CVE-2025-30439P4MEDIUMCVSS 4.6v15.42025-03-31
CVE-2025-30439 [MEDIUM] CVE-2025-30439: macOS Sequoia 15.4
Apple Security Update: About the security content of macOS Sequoia 15.4
Product: macOS Sequoia
Version: 15.4
CVE: CVE-2025-30439
Component: Focus
Impact: An attacker with physical access to a locked device may be able to view sensitive user information
Description: The issue was addressed with improved checks.
apple
CVE-2024-44137P4MEDIUMCVSS 4.6v152024-09-16
CVE-2024-44137 [MEDIUM] CVE-2024-44137: macOS Sequoia 15
Apple Security Update: About the security content of macOS Sequoia 15
Product: macOS Sequoia
Version: 15
CVE: CVE-2024-44137
Component: Screen Capture
Impact: An attacker with physical access may be able to share items from the lock screen
Description: The issue was addressed with improved checks.
apple
CVE-2025-43259P4MEDIUMCVSS 4.6v15.62025-07-29
CVE-2025-43259 [MEDIUM] CVE-2025-43259: macOS Sequoia 15.6
Apple Security Update: About the security content of macOS Sequoia 15.6
Product: macOS Sequoia
Version: 15.6
CVE: CVE-2025-43259
Component: WindowServer
Impact: An attacker with physical access to a locked device may be able to view sensitive user information
Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2026-20662P4MEDIUMCVSS 4.6v15.7.42026-02-11
CVE-2026-20662 [MEDIUM] CVE-2026-20662: macOS Sequoia 15.7.4
Apple Security Update: About the security content of macOS Sequoia 15.7.4
Product: macOS Sequoia
Version: 15.7.4
CVE: CVE-2026-20662
Component: Siri
Impact: An attacker with physical access to a locked device may be able to view sensitive user information
Description: An authorization issue was addressed with improved state management.
apple
CVE-2025-24128P4MEDIUMCVSS 4.3v15.32025-01-27
CVE-2025-24128 [MEDIUM] CVE-2025-24128: macOS Sequoia 15.3
Apple Security Update: About the security content of macOS Sequoia 15.3
Product: macOS Sequoia
Version: 15.3
CVE: CVE-2025-24128
Component: Safari
Impact: Visiting a malicious website may lead to address bar spoofing
Description: The issue was addressed by adding additional logic.
apple
CVE-2025-24242P4MEDIUMCVSS 4.4v15.42025-03-31
CVE-2025-24242 [MEDIUM] CVE-2025-24242: macOS Sequoia 15.4
Apple Security Update: About the security content of macOS Sequoia 15.4
Product: macOS Sequoia
Version: 15.4
CVE: CVE-2025-24242
Component: System Settings
Impact: An app with root privileges may be able to access private information
Description: This issue was addressed with improved handling of symlinks.
apple
CVE-2024-44130P4MEDIUMCVSS 4.4v152024-09-16
CVE-2024-44130 [MEDIUM] CVE-2024-44130: macOS Sequoia 15
Apple Security Update: About the security content of macOS Sequoia 15
Product: macOS Sequoia
Version: 15
CVE: CVE-2024-44130
Component: CVE-2024-44130
apple
CVE-2024-40825P4MEDIUMCVSS 4.4v152024-09-16
CVE-2024-40825 [MEDIUM] CVE-2024-40825: macOS Sequoia 15
Apple Security Update: About the security content of macOS Sequoia 15
Product: macOS Sequoia
Version: 15
CVE: CVE-2024-40825
Component: APFS
Impact: A malicious app with root privileges may be able to modify the contents of system files
Description: The issue was addressed with improved checks.
apple
CVE-2025-43310P4MEDIUMCVSS 4.4v15.72025-09-15
CVE-2025-43310 [MEDIUM] CVE-2025-43310: macOS Sequoia 15.7
Apple Security Update: About the security content of macOS Sequoia 15.7
Product: macOS Sequoia
Version: 15.7
CVE: CVE-2025-43310
Component: WindowServer
Impact: An app may be able to trick a user into copying sensitive data to the pasteboard
Description: A configuration issue was addressed with additional restrictions.
apple
CVE-2024-54568P4MEDIUMCVSS 4.3v15.22024-12-11
CVE-2024-54568 [MEDIUM] CVE-2024-54568: macOS Sequoia 15.2
Apple Security Update: About the security content of macOS Sequoia 15.2
Product: macOS Sequoia
Version: 15.2
CVE: CVE-2024-54568
Component: ATS
Impact: Parsing a maliciously crafted file may lead to an unexpected app termination
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43374P4MEDIUMCVSS 4.3v15.52025-05-12
CVE-2025-43374 [MEDIUM] CVE-2025-43374: macOS Sequoia 15.5
Apple Security Update: About the security content of macOS Sequoia 15.5
Product: macOS Sequoia
Version: 15.5
CVE: CVE-2025-43374
Component: Wi-Fi
Impact: An attacker in physical proximity may be able to cause an out-of-bounds read in kernel memory
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2025-43265P4MEDIUMCVSS 4.0v15.62025-07-29
CVE-2025-43265 [MEDIUM] CVE-2025-43265: macOS Sequoia 15.6
Apple Security Update: About the security content of macOS Sequoia 15.6
Product: macOS Sequoia
Version: 15.6
CVE: CVE-2025-43265
Component: WebKit
Impact: Processing maliciously crafted web content may disclose internal states of the app
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2024-44231P4MEDIUMCVSS 4.6v15.12024-10-28
CVE-2024-44231 [MEDIUM] CVE-2024-44231: macOS Sequoia 15.1
Apple Security Update: About the security content of macOS Sequoia 15.1
Product: macOS Sequoia
Version: 15.1
CVE: CVE-2024-44231
Component: Login Window
Impact: A person with physical access to a Mac may be able to bypass Login Window during a software update
Description: This issue was addressed through improved state management.
apple
CVE-2024-44223P4MEDIUMCVSS 4.6v15.12024-10-28
CVE-2024-44223 [MEDIUM] CVE-2024-44223: macOS Sequoia 15.1
Apple Security Update: About the security content of macOS Sequoia 15.1
Product: macOS Sequoia
Version: 15.1
CVE: CVE-2024-44223
Component: Login Window
Impact: An attacker with physical access to a Mac may be able to view protected content from the Login Window
Description: This issue was addressed through improved state management.
apple
CVE-2025-24136P4MEDIUMCVSS 4.4v15.32025-01-27
CVE-2025-24136 [MEDIUM] CVE-2025-24136: macOS Sequoia 15.3
Apple Security Update: About the security content of macOS Sequoia 15.3
Product: macOS Sequoia
Version: 15.3
CVE: CVE-2025-24136
Component: Login Window
Impact: A malicious app may be able to create symlinks to protected regions of the disk
Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2025-24116P4MEDIUMCVSS 4.4v15.32025-01-27
CVE-2025-24116 [MEDIUM] CVE-2025-24116: macOS Sequoia 15.3
Apple Security Update: About the security content of macOS Sequoia 15.3
Product: macOS Sequoia
Version: 15.3
CVE: CVE-2025-24116
Component: LaunchServices
Impact: An app may be able to bypass Privacy preferences
Description: An access issue was addressed with additional sandbox restrictions.
apple
CVE-2025-43274P4MEDIUMCVSS 4.4v15.62025-07-29
CVE-2025-43274 [MEDIUM] CVE-2025-43274: macOS Sequoia 15.6
Apple Security Update: About the security content of macOS Sequoia 15.6
Product: macOS Sequoia
Version: 15.6
CVE: CVE-2025-43274
Component: RemoteViewServices
Impact: A sandboxed process may be able to circumvent sandbox restrictions
Description: A privacy issue was addressed by removing the vulnerable code.
apple
CVE-2026-20609P4MEDIUMCVSS 4.4v15.7.42026-02-11
CVE-2026-20609 [MEDIUM] CVE-2026-20609: macOS Sequoia 15.7.4
Apple Security Update: About the security content of macOS Sequoia 15.7.4
Product: macOS Sequoia
Version: 15.7.4
CVE: CVE-2026-20609
Component: CoreMedia
Impact: Processing a maliciously crafted file may lead to a denial-of-service or potentially disclose memory contents
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-31266P4MEDIUMCVSS 4.3v15.52025-05-12
CVE-2025-31266 [MEDIUM] CVE-2025-31266: macOS Sequoia 15.5
Apple Security Update: About the security content of macOS Sequoia 15.5
Product: macOS Sequoia
Version: 15.5
CVE: CVE-2025-31266
Component: Safari
Impact: A website may be able to spoof the domain name in the title of a pop-up window
Description: A spoofing issue was addressed with improved truncation when displaying the fully qualified domain name
apple
CVE-2025-43226P4MEDIUMCVSS 4.0v15.62025-07-29
CVE-2025-43226 [MEDIUM] CVE-2025-43226: macOS Sequoia 15.6
Apple Security Update: About the security content of macOS Sequoia 15.6
Product: macOS Sequoia
Version: 15.6
CVE: CVE-2025-43226
Component: CVE-2025-43226
apple