Apple Macos Sonoma vulnerabilities
959 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
959
CISA KEV
11
actively exploited
Public exploits
3
Exploited in wild
6
Severity breakdown
CRITICAL73HIGH289MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 12 of 48
CVE-2025-31246HIGHCVSS 8.8v14.7.62025-05-12
CVE-2025-31246 [HIGH] CVE-2025-31246: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-31246
Component: About Apple security updates
Impact: Connecting to a malicious AFP server may corrupt kernel memory
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-31222HIGHCVSS 7.8v14.7.62025-05-12
CVE-2025-31222 [HIGH] CVE-2025-31222: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-31222
Component: Libinfo
Impact: An app may be able to bypass ASLR
Description: The issue was addressed with improved checks.
apple
CVE-2025-30453HIGHCVSS 7.8v14.7.62025-05-12
CVE-2025-30453 [HIGH] CVE-2025-30453: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-30453
Component: DiskArbitration
Impact: A malicious app may be able to gain root privileges
Description: The issue was addressed with additional permissions checks.
apple
CVE-2024-8176HIGHCVSS 7.5v14.7.62025-05-12
CVE-2024-8176 [HIGH] CVE-2024-8176: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2024-8176
Component: CVE-2024-8176
apple
CVE-2025-31224HIGHCVSS 7.8v14.7.62025-05-12
CVE-2025-31224 [HIGH] CVE-2025-31224: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-31224
Component: Sandbox
Impact: An app may be able to bypass certain Privacy preferences
Description: A logic issue was addressed with improved checks.
apple
CVE-2025-31239MEDIUMCVSS 4.3v14.7.62025-05-12
CVE-2025-31239 [MEDIUM] CVE-2025-31239: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-31239
Component: CoreMedia
Impact: Parsing a file may lead to an unexpected app termination
Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2025-26465MEDIUMCVSS 6.8v14.7.62025-05-12
CVE-2025-26465 [MEDIUM] CVE-2025-26465: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-26465
Component: CVE-2025-26465
apple
CVE-2025-31245MEDIUMCVSS 5.5v14.7.62025-05-12
CVE-2025-31245 [MEDIUM] CVE-2025-31245: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-31245
Component: Pro Res
Impact: An app may be able to cause unexpected system termination
Description: The issue was addressed with improved checks.
apple
CVE-2025-24142MEDIUMCVSS 5.5v14.7.62025-05-12
CVE-2025-24142 [MEDIUM] CVE-2025-24142: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-24142
Component: Notification Center
Impact: An app may be able to access sensitive user data
Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2025-24144MEDIUMCVSS 5.5v14.7.62025-05-12
CVE-2025-24144 [MEDIUM] CVE-2025-24144: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-24144
Component: Kernel
Impact: An app may be able to leak sensitive kernel state
Description: An information disclosure issue was addressed by removing the vulnerable code.
apple
CVE-2025-26466MEDIUMCVSS 5.9v14.7.62025-05-12
CVE-2025-26466 [MEDIUM] CVE-2025-26466: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-26466
Component: CVE-2025-26466
apple
CVE-2025-31235MEDIUMCVSS 6.5v14.7.62025-05-12
CVE-2025-31235 [MEDIUM] CVE-2025-31235: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-31235
Component: Audio
Impact: An app may be able to cause unexpected system termination
Description: A double free issue was addressed with improved memory management.
apple
CVE-2025-31209MEDIUMCVSS 6.3v14.7.62025-05-12
CVE-2025-31209 [MEDIUM] CVE-2025-31209: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-31209
Component: CoreGraphics
Impact: Parsing a file may lead to disclosure of user information
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2025-31241MEDIUMCVSS 5.3v14.7.62025-05-12
CVE-2025-31241 [MEDIUM] CVE-2025-31241: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-31241
Component: Kernel
Impact: A remote attacker may cause an unexpected app termination
Description: A double free issue was addressed with improved memory management.
apple
CVE-2025-30440MEDIUMCVSS 5.5v14.7.62025-05-12
CVE-2025-30440 [MEDIUM] CVE-2025-30440: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-30440
Component: Libinfo
Impact: An app may be able to bypass ASLR
Description: The issue was addressed with improved checks.
apple
CVE-2025-24155MEDIUMCVSS 5.5v14.7.62025-05-12
CVE-2025-24155 [MEDIUM] CVE-2025-24155: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-24155
Component: WebContentFilter
Impact: An app may be able to disclose kernel memory
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-31233MEDIUMCVSS 6.3v14.7.62025-05-12
CVE-2025-31233 [MEDIUM] CVE-2025-31233: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-31233
Component: CoreMedia
Impact: Processing a maliciously crafted video file may lead to unexpected app termination or corrupt process memory
Description: The issue was addressed with improved input sanitization.
apple
CVE-2025-31220MEDIUMCVSS 5.5v14.7.62025-05-12
CVE-2025-31220 [MEDIUM] CVE-2025-31220: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-31220
Component: Weather
Impact: A malicious app may be able to read sensitive location information
Description: A privacy issue was addressed by removing sensitive data.
apple
CVE-2025-31196MEDIUMCVSS 5.5v14.7.62025-05-12
CVE-2025-31196 [MEDIUM] CVE-2025-31196: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-31196
Component: CoreGraphics
Impact: Processing a maliciously crafted file may lead to a denial-of-service or potentially disclose memory contents
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2025-31251MEDIUMCVSS 5.5v14.7.62025-05-12
CVE-2025-31251 [MEDIUM] CVE-2025-31251: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-31251
Component: AppleJPEG
Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory
Description: The issue was addressed with improved input sanitization.
apple