Apple Macos Sonoma vulnerabilities
960 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 12 of 48
CVE-2025-24137P3HIGHCVSS 8.0v14.7.32025-01-27
CVE-2025-24137 [HIGH] CVE-2025-24137: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24137
Component: AirPlay
Impact: An attacker on the local network may corrupt process memory
Description: A type confusion issue was addressed with improved checks.
apple
CVE-2023-42844P3HIGHCVSS 7.5v14.12023-10-25
CVE-2023-42844 [HIGH] CVE-2023-42844: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-42844
Component: Foundation
Impact: A website may be able to access sensitive user data when resolving symlinks
Description: This issue was addressed with improved handling of symlinks.
apple
CVE-2024-27829P3HIGHCVSS 7.8v14.52024-05-13
CVE-2024-27829 [HIGH] CVE-2024-27829: macOS Sonoma 14.5
Apple Security Update: About the security content of macOS Sonoma 14.5
Product: macOS Sonoma
Version: 14.5
CVE: CVE-2024-27829
Component: AppleVA
Impact: Processing a file may lead to unexpected app termination or arbitrary code execution
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43372P3HIGHCVSS 7.8v14.8.22025-11-03
CVE-2025-43372 [HIGH] CVE-2025-43372: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43372
Component: ImageIO
Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory
Description: The issue was addressed with improved input validation.
apple
CVE-2023-42902P3HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42902 [HIGH] CVE-2023-42902: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42902
Component: AppleGraphicsControl
Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2023-42942P3HIGHCVSS 7.8v14.12023-10-25
CVE-2023-42942 [HIGH] CVE-2023-42942: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-42942
Component: LaunchServices
Impact: An app may be able to access sensitive user data
Description: The issue was addressed with improved permissions logic.
apple
CVE-2025-30456P3HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-30456 [HIGH] CVE-2025-30456: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-30456
Component: DiskArbitration
Impact: An app may be able to gain root privileges
Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
apple
CVE-2024-55549P3HIGHCVSS 7.8v14.7.32025-01-27
CVE-2024-55549 [HIGH] CVE-2024-55549: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2024-55549
Component: LaunchServices
Impact: An app may be able to bypass Privacy preferences
Description: An access issue was addressed with additional sandbox restrictions.
apple
CVE-2023-42926P3HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42926 [HIGH] CVE-2023-42926: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42926
Component: AppleGraphicsControl
Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2024-27842P3HIGHCVSS 7.8v14.52024-05-13
CVE-2024-27842 [HIGH] CVE-2024-27842: macOS Sonoma 14.5
Apple Security Update: About the security content of macOS Sonoma 14.5
Product: macOS Sonoma
Version: 14.5
CVE: CVE-2024-27842
Component: Transparency
Impact: An app may be able to access user-sensitive data
Description: This issue was addressed with a new entitlement.
apple
CVE-2024-44255P3HIGHCVSS 7.8v14.7.12024-10-28
CVE-2024-44255 [HIGH] CVE-2024-44255: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44255
Component: App Support
Impact: A malicious app may be able to run arbitrary shortcuts without user consent
Description: A path handling issue was addressed with improved logic.
apple
CVE-2025-43277P3HIGHCVSS 7.8v14.82025-09-15
CVE-2025-43277 [HIGH] CVE-2025-43277: macOS Sonoma 14.8
Apple Security Update: About the security content of macOS Sonoma 14.8
Product: macOS Sonoma
Version: 14.8
CVE: CVE-2025-43277
Component: CoreAudio
Impact: Processing a maliciously crafted audio file may lead to memory corruption
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-41995P3HIGHCVSS 7.8v142023-09-26
CVE-2023-41995 [HIGH] CVE-2023-41995: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-41995
Component: Kernel
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-38615P3HIGHCVSS 7.8v142023-09-26
CVE-2023-38615 [HIGH] CVE-2023-38615: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-38615
Component: AMD
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-30464P3HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-30464 [HIGH] CVE-2025-30464: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-30464
Component: GPU Drivers
Impact: An app may be able to cause unexpected system termination or corrupt kernel memory
Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2025-24234P3HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24234 [HIGH] CVE-2025-24234: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24234
Component: AccountPolicy
Impact: A malicious app may be able to gain root privileges
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2024-40828P3HIGHCVSS 7.8v14.62024-07-29
CVE-2024-40828 [HIGH] CVE-2024-40828: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-40828
Component: StorageKit
Impact: A malicious app may be able to gain root privileges
Description: The issue was addressed with improved checks.
apple
CVE-2024-27796P3HIGHCVSS 7.8v14.52024-05-13
CVE-2024-27796 [HIGH] CVE-2024-27796: macOS Sonoma 14.5
Apple Security Update: About the security content of macOS Sonoma 14.5
Product: macOS Sonoma
Version: 14.5
CVE: CVE-2024-27796
Component: Voice Control
Impact: An attacker may be able to elevate privileges
Description: The issue was addressed with improved checks.
apple
CVE-2024-23258P3HIGHCVSS 7.8v14.42024-03-07
CVE-2024-23258 [HIGH] CVE-2024-23258: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23258
Component: ImageIO
Impact: Processing an image may lead to arbitrary code execution
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2025-31259P3HIGHCVSS 7.8v14.82025-09-15
CVE-2025-31259 [HIGH] CVE-2025-31259: macOS Sonoma 14.8
Apple Security Update: About the security content of macOS Sonoma 14.8
Product: macOS Sonoma
Version: 14.8
CVE: CVE-2025-31259
Component: Screenshots
Impact: An app may be able to capture a screenshot of an app entering or exiting full screen mode
Description: A privacy issue was addressed with improved checks.
apple