cbcvebase.

Apple Macos Sonoma vulnerabilities

960 known vulnerabilities affecting apple/macos_sonoma.

Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1

Vulnerabilities

Page 12 of 48
CVE-2025-24137P3HIGHCVSS 8.0v14.7.32025-01-27
CVE-2025-24137 [HIGH] CVE-2025-24137: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2025-24137 Component: AirPlay Impact: An attacker on the local network may corrupt process memory Description: A type confusion issue was addressed with improved checks.
apple
CVE-2023-42844P3HIGHCVSS 7.5v14.12023-10-25
CVE-2023-42844 [HIGH] CVE-2023-42844: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42844 Component: Foundation Impact: A website may be able to access sensitive user data when resolving symlinks Description: This issue was addressed with improved handling of symlinks.
apple
CVE-2024-27829P3HIGHCVSS 7.8v14.52024-05-13
CVE-2024-27829 [HIGH] CVE-2024-27829: macOS Sonoma 14.5 Apple Security Update: About the security content of macOS Sonoma 14.5 Product: macOS Sonoma Version: 14.5 CVE: CVE-2024-27829 Component: AppleVA Impact: Processing a file may lead to unexpected app termination or arbitrary code execution Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43372P3HIGHCVSS 7.8v14.8.22025-11-03
CVE-2025-43372 [HIGH] CVE-2025-43372: macOS Sonoma 14.8.2 Apple Security Update: About the security content of macOS Sonoma 14.8.2 Product: macOS Sonoma Version: 14.8.2 CVE: CVE-2025-43372 Component: ImageIO Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory Description: The issue was addressed with improved input validation.
apple
CVE-2023-42902P3HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42902 [HIGH] CVE-2023-42902: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42902 Component: AppleGraphicsControl Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2023-42942P3HIGHCVSS 7.8v14.12023-10-25
CVE-2023-42942 [HIGH] CVE-2023-42942: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42942 Component: LaunchServices Impact: An app may be able to access sensitive user data Description: The issue was addressed with improved permissions logic.
apple
CVE-2025-30456P3HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-30456 [HIGH] CVE-2025-30456: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-30456 Component: DiskArbitration Impact: An app may be able to gain root privileges Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
apple
CVE-2024-55549P3HIGHCVSS 7.8v14.7.32025-01-27
CVE-2024-55549 [HIGH] CVE-2024-55549: macOS Sonoma 14.7.3 Apple Security Update: About the security content of macOS Sonoma 14.7.3 Product: macOS Sonoma Version: 14.7.3 CVE: CVE-2024-55549 Component: LaunchServices Impact: An app may be able to bypass Privacy preferences Description: An access issue was addressed with additional sandbox restrictions.
apple
CVE-2023-42926P3HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42926 [HIGH] CVE-2023-42926: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42926 Component: AppleGraphicsControl Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2024-27842P3HIGHCVSS 7.8v14.52024-05-13
CVE-2024-27842 [HIGH] CVE-2024-27842: macOS Sonoma 14.5 Apple Security Update: About the security content of macOS Sonoma 14.5 Product: macOS Sonoma Version: 14.5 CVE: CVE-2024-27842 Component: Transparency Impact: An app may be able to access user-sensitive data Description: This issue was addressed with a new entitlement.
apple
CVE-2024-44255P3HIGHCVSS 7.8v14.7.12024-10-28
CVE-2024-44255 [HIGH] CVE-2024-44255: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44255 Component: App Support Impact: A malicious app may be able to run arbitrary shortcuts without user consent Description: A path handling issue was addressed with improved logic.
apple
CVE-2025-43277P3HIGHCVSS 7.8v14.82025-09-15
CVE-2025-43277 [HIGH] CVE-2025-43277: macOS Sonoma 14.8 Apple Security Update: About the security content of macOS Sonoma 14.8 Product: macOS Sonoma Version: 14.8 CVE: CVE-2025-43277 Component: CoreAudio Impact: Processing a maliciously crafted audio file may lead to memory corruption Description: The issue was addressed with improved memory handling.
apple
CVE-2023-41995P3HIGHCVSS 7.8v142023-09-26
CVE-2023-41995 [HIGH] CVE-2023-41995: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-41995 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-38615P3HIGHCVSS 7.8v142023-09-26
CVE-2023-38615 [HIGH] CVE-2023-38615: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-38615 Component: AMD Impact: An app may be able to execute arbitrary code with kernel privileges Description: The issue was addressed with improved memory handling.
apple
CVE-2025-30464P3HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-30464 [HIGH] CVE-2025-30464: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-30464 Component: GPU Drivers Impact: An app may be able to cause unexpected system termination or corrupt kernel memory Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2025-24234P3HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24234 [HIGH] CVE-2025-24234: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24234 Component: AccountPolicy Impact: A malicious app may be able to gain root privileges Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2024-40828P3HIGHCVSS 7.8v14.62024-07-29
CVE-2024-40828 [HIGH] CVE-2024-40828: macOS Sonoma 14.6 Apple Security Update: About the security content of macOS Sonoma 14.6 Product: macOS Sonoma Version: 14.6 CVE: CVE-2024-40828 Component: StorageKit Impact: A malicious app may be able to gain root privileges Description: The issue was addressed with improved checks.
apple
CVE-2024-27796P3HIGHCVSS 7.8v14.52024-05-13
CVE-2024-27796 [HIGH] CVE-2024-27796: macOS Sonoma 14.5 Apple Security Update: About the security content of macOS Sonoma 14.5 Product: macOS Sonoma Version: 14.5 CVE: CVE-2024-27796 Component: Voice Control Impact: An attacker may be able to elevate privileges Description: The issue was addressed with improved checks.
apple
CVE-2024-23258P3HIGHCVSS 7.8v14.42024-03-07
CVE-2024-23258 [HIGH] CVE-2024-23258: macOS Sonoma 14.4 Apple Security Update: About the security content of macOS Sonoma 14.4 Product: macOS Sonoma Version: 14.4 CVE: CVE-2024-23258 Component: ImageIO Impact: Processing an image may lead to arbitrary code execution Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2025-31259P3HIGHCVSS 7.8v14.82025-09-15
CVE-2025-31259 [HIGH] CVE-2025-31259: macOS Sonoma 14.8 Apple Security Update: About the security content of macOS Sonoma 14.8 Product: macOS Sonoma Version: 14.8 CVE: CVE-2025-31259 Component: Screenshots Impact: An app may be able to capture a screenshot of an app entering or exiting full screen mode Description: A privacy issue was addressed with improved checks.
apple
Apple Macos Sonoma vulnerabilities | cvebase