Apple Macos Sonoma vulnerabilities

959 known vulnerabilities affecting apple/macos_sonoma.

Total CVEs
959
CISA KEV
11
actively exploited
Public exploits
3
Exploited in wild
6
Severity breakdown
CRITICAL73HIGH289MEDIUM533LOW63UNKNOWN1

Vulnerabilities

Page 12 of 48
CVE-2025-31246HIGHCVSS 8.8v14.7.62025-05-12
CVE-2025-31246 [HIGH] CVE-2025-31246: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-31246 Component: About Apple security updates Impact: Connecting to a malicious AFP server may corrupt kernel memory Description: The issue was addressed with improved memory handling.
apple
CVE-2025-31222HIGHCVSS 7.8v14.7.62025-05-12
CVE-2025-31222 [HIGH] CVE-2025-31222: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-31222 Component: Libinfo Impact: An app may be able to bypass ASLR Description: The issue was addressed with improved checks.
apple
CVE-2025-30453HIGHCVSS 7.8v14.7.62025-05-12
CVE-2025-30453 [HIGH] CVE-2025-30453: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-30453 Component: DiskArbitration Impact: A malicious app may be able to gain root privileges Description: The issue was addressed with additional permissions checks.
apple
CVE-2024-8176HIGHCVSS 7.5v14.7.62025-05-12
CVE-2024-8176 [HIGH] CVE-2024-8176: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2024-8176 Component: CVE-2024-8176
apple
CVE-2025-31224HIGHCVSS 7.8v14.7.62025-05-12
CVE-2025-31224 [HIGH] CVE-2025-31224: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-31224 Component: Sandbox Impact: An app may be able to bypass certain Privacy preferences Description: A logic issue was addressed with improved checks.
apple
CVE-2025-31239MEDIUMCVSS 4.3v14.7.62025-05-12
CVE-2025-31239 [MEDIUM] CVE-2025-31239: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-31239 Component: CoreMedia Impact: Parsing a file may lead to an unexpected app termination Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2025-26465MEDIUMCVSS 6.8v14.7.62025-05-12
CVE-2025-26465 [MEDIUM] CVE-2025-26465: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-26465 Component: CVE-2025-26465
apple
CVE-2025-31245MEDIUMCVSS 5.5v14.7.62025-05-12
CVE-2025-31245 [MEDIUM] CVE-2025-31245: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-31245 Component: Pro Res Impact: An app may be able to cause unexpected system termination Description: The issue was addressed with improved checks.
apple
CVE-2025-24142MEDIUMCVSS 5.5v14.7.62025-05-12
CVE-2025-24142 [MEDIUM] CVE-2025-24142: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-24142 Component: Notification Center Impact: An app may be able to access sensitive user data Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2025-24144MEDIUMCVSS 5.5v14.7.62025-05-12
CVE-2025-24144 [MEDIUM] CVE-2025-24144: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-24144 Component: Kernel Impact: An app may be able to leak sensitive kernel state Description: An information disclosure issue was addressed by removing the vulnerable code.
apple
CVE-2025-26466MEDIUMCVSS 5.9v14.7.62025-05-12
CVE-2025-26466 [MEDIUM] CVE-2025-26466: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-26466 Component: CVE-2025-26466
apple
CVE-2025-31235MEDIUMCVSS 6.5v14.7.62025-05-12
CVE-2025-31235 [MEDIUM] CVE-2025-31235: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-31235 Component: Audio Impact: An app may be able to cause unexpected system termination Description: A double free issue was addressed with improved memory management.
apple
CVE-2025-31209MEDIUMCVSS 6.3v14.7.62025-05-12
CVE-2025-31209 [MEDIUM] CVE-2025-31209: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-31209 Component: CoreGraphics Impact: Parsing a file may lead to disclosure of user information Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2025-31241MEDIUMCVSS 5.3v14.7.62025-05-12
CVE-2025-31241 [MEDIUM] CVE-2025-31241: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-31241 Component: Kernel Impact: A remote attacker may cause an unexpected app termination Description: A double free issue was addressed with improved memory management.
apple
CVE-2025-30440MEDIUMCVSS 5.5v14.7.62025-05-12
CVE-2025-30440 [MEDIUM] CVE-2025-30440: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-30440 Component: Libinfo Impact: An app may be able to bypass ASLR Description: The issue was addressed with improved checks.
apple
CVE-2025-24155MEDIUMCVSS 5.5v14.7.62025-05-12
CVE-2025-24155 [MEDIUM] CVE-2025-24155: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-24155 Component: WebContentFilter Impact: An app may be able to disclose kernel memory Description: The issue was addressed with improved memory handling.
apple
CVE-2025-31233MEDIUMCVSS 6.3v14.7.62025-05-12
CVE-2025-31233 [MEDIUM] CVE-2025-31233: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-31233 Component: CoreMedia Impact: Processing a maliciously crafted video file may lead to unexpected app termination or corrupt process memory Description: The issue was addressed with improved input sanitization.
apple
CVE-2025-31220MEDIUMCVSS 5.5v14.7.62025-05-12
CVE-2025-31220 [MEDIUM] CVE-2025-31220: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-31220 Component: Weather Impact: A malicious app may be able to read sensitive location information Description: A privacy issue was addressed by removing sensitive data.
apple
CVE-2025-31196MEDIUMCVSS 5.5v14.7.62025-05-12
CVE-2025-31196 [MEDIUM] CVE-2025-31196: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-31196 Component: CoreGraphics Impact: Processing a maliciously crafted file may lead to a denial-of-service or potentially disclose memory contents Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2025-31251MEDIUMCVSS 5.5v14.7.62025-05-12
CVE-2025-31251 [MEDIUM] CVE-2025-31251: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-31251 Component: AppleJPEG Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory Description: The issue was addressed with improved input sanitization.
apple