Apple Macos Sonoma vulnerabilities
960 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 1 of 48
CVE-2025-43300P1CRITICALCVSS 10.0KEVPoCv14.7.82025-08-20
CVE-2025-43300 [CRITICAL] CVE-2025-43300: macOS Sonoma 14.7.8
Apple Security Update: About the security content of macOS Sonoma 14.7.8
Product: macOS Sonoma
Version: 14.7.8
CVE: CVE-2025-43300
Component: ImageIO
Impact: Processing a malicious image file may result in memory corruption. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals.
Description: An out-of-bounds write issue was addressed with improved
apple
CVE-2025-24085P1CRITICALCVSS 10.0KEVPoCv14.7.52025-03-31
CVE-2025-24085 [CRITICAL] CVE-2025-24085: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24085
Component: CVE-2025-24085
apple
CVE-2023-41993P1HIGHCVSS 8.8KEVPoCv142023-09-26
CVE-2023-41993 [HIGH] CVE-2023-41993: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-41993
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 16.7.
Description: The issue was addressed with improved checks.
apple
CVE-2024-23222P1HIGHCVSS 8.8KEVPoCv14.32024-01-22
CVE-2024-23222 [HIGH] CVE-2024-23222: macOS Sonoma 14.3
Apple Security Update: About the security content of macOS Sonoma 14.3
Product: macOS Sonoma
Version: 14.3
CVE: CVE-2024-23222
Component: CVE-2024-23222
apple
CVE-2023-42917P1HIGHCVSS 8.8KEVv14.1.22023-11-30
CVE-2023-42917 [HIGH] CVE-2023-42917: macOS Sonoma 14.1.2
Apple Security Update: About the security content of macOS Sonoma 14.1.2
Product: macOS Sonoma
Version: 14.1.2
CVE: CVE-2023-42917
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1.
Description: A memory corruption vulnerability was addressed with improved locking.
apple
CVE-2024-23225P1HIGHCVSS 7.8KEVv14.42024-03-07
CVE-2024-23225 [HIGH] CVE-2024-23225: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23225
Component: CVE-2024-23225
Impact: A maliciously crafted ZIP archive may bypass Gatekeeper checks
Description: This issue was addressed with improved checks.
apple
CVE-2024-23296P1HIGHCVSS 7.8KEVv14.42024-03-07
CVE-2024-23296 [HIGH] CVE-2024-23296: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23296
Component: CVE-2024-23296
apple
CVE-2023-42916P1MEDIUMCVSS 6.5KEVv14.1.22023-11-30
CVE-2023-42916 [MEDIUM] CVE-2023-42916: macOS Sonoma 14.1.2
Apple Security Update: About the security content of macOS Sonoma 14.1.2
Product: macOS Sonoma
Version: 14.1.2
CVE: CVE-2023-42916
Component: WebKit
Impact: Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1.
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2025-43510P1HIGHCVSS 7.8KEVv14.8.22025-11-03
CVE-2025-43510 [HIGH] CVE-2025-43510: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43510
Component: Kernel
Impact: A malicious application may cause unexpected changes in memory shared between processes
Description: A memory corruption issue was addressed with improved lock state checking.
apple
CVE-2025-43520P1MEDIUMCVSS 5.5KEVv14.8.22025-11-03
CVE-2025-43520 [MEDIUM] CVE-2025-43520: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43520
Component: Kernel
Impact: A malicious application may be able to cause unexpected system termination or write kernel memory
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2025-43200P2MEDIUMCVSS 4.2KEVv14.7.42025-02-10
CVE-2025-43200 [MEDIUM] CVE-2025-43200: macOS Sonoma 14.7.4
Apple Security Update: About the security content of macOS Sonoma 14.7.4
Product: macOS Sonoma
Version: 14.7.4
CVE: CVE-2025-43200
Component: Messages
Impact: A logic issue existed when processing a maliciously crafted photo or video shared via an iCloud Link. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals.
Description: This issue was addresse
apple
CVE-2024-6387P1HIGHCVSS 8.1ExploitedPoCv14.62024-07-29
CVE-2024-6387 [HIGH] CVE-2024-6387: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-6387
Component: CVE-2024-6387
apple
CVE-2023-38408P1CRITICALCVSS 9.8ExploitedPoCv142023-09-26
CVE-2023-38408 [CRITICAL] CVE-2023-38408: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-38408
Component: OpenSSH
Impact: A vulnerability was discovered in OpenSSHs remote forwarding
Description: This issue was addressed by updating OpenSSH to 9.3p2
apple
CVE-2023-48795P1MEDIUMCVSS 5.9ExploitedPoCv14.42024-03-07
CVE-2023-48795 [MEDIUM] CVE-2023-48795: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2023-48795
Component: CVE-2023-48795
apple
CVE-2025-46289P2MEDIUMCVSS 5.5Exploitedv14.8.32025-12-12
CVE-2025-46289 [MEDIUM] CVE-2025-46289: macOS Sonoma 14.8.3
Apple Security Update: About the security content of macOS Sonoma 14.8.3
Product: macOS Sonoma
Version: 14.8.3
CVE: CVE-2025-46289
Component: AppSandbox
Impact: An app may be able to access protected user data
Description: A logic issue was addressed with improved file handling.
apple
CVE-2025-43512P2HIGHCVSS 7.8Exploitedv14.8.32025-12-12
CVE-2025-43512 [HIGH] CVE-2025-43512: macOS Sonoma 14.8.3
Apple Security Update: About the security content of macOS Sonoma 14.8.3
Product: macOS Sonoma
Version: 14.8.3
CVE: CVE-2025-43512
Component: Kernel
Impact: An app may be able to elevate privileges
Description: A logic issue was addressed with improved checks.
apple
CVE-2025-43482P2MEDIUMCVSS 5.5Exploitedv14.8.32025-12-12
CVE-2025-43482 [MEDIUM] CVE-2025-43482: macOS Sonoma 14.8.3
Apple Security Update: About the security content of macOS Sonoma 14.8.3
Product: macOS Sonoma
Version: 14.8.3
CVE: CVE-2025-43482
Component: Audio
Impact: An app may be able to cause a denial-of-service
Description: The issue was addressed with improved input validation.
apple
CVE-2025-43517P2LOWCVSS 3.3Exploitedv14.8.32025-12-12
CVE-2025-43517 [LOW] CVE-2025-43517: macOS Sonoma 14.8.3
Apple Security Update: About the security content of macOS Sonoma 14.8.3
Product: macOS Sonoma
Version: 14.8.3
CVE: CVE-2025-43517
Component: Call History
Impact: An app may be able to access protected user data
Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2025-43532P2LOWCVSS 2.8Exploitedv14.8.32025-12-12
CVE-2025-43532 [LOW] CVE-2025-43532: macOS Sonoma 14.8.3
Apple Security Update: About the security content of macOS Sonoma 14.8.3
Product: macOS Sonoma
Version: 14.8.3
CVE: CVE-2025-43532
Component: Foundation
Impact: Processing malicious data may lead to unexpected app termination
Description: A memory corruption issue was addressed with improved bounds checking.
apple
CVE-2023-38545P2CRITICALCVSS 9.8v14.22023-12-11
CVE-2023-38545 [CRITICAL] CVE-2023-38545: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-38545
Component: CVE-2023-38545
apple
1 / 48Next →