Apple Macos Sonoma vulnerabilities

959 known vulnerabilities affecting apple/macos_sonoma.

Total CVEs
959
CISA KEV
11
actively exploited
Public exploits
3
Exploited in wild
6
Severity breakdown
CRITICAL73HIGH289MEDIUM533LOW63UNKNOWN1

Vulnerabilities

Page 14 of 48
CVE-2025-30457CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-30457 [CRITICAL] CVE-2025-30457: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-30457 Component: SystemMigration Impact: A malicious app may be able to create symlinks to protected regions of the disk Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2025-24256CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24256 [CRITICAL] CVE-2025-24256: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24256 Component: GPU Drivers Impact: An app may be able to disclose kernel memory Description: The issue was addressed with improved bounds checks.
apple
CVE-2025-30452CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-30452 [CRITICAL] CVE-2025-30452: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-30452 Component: Sandbox Impact: An input validation issue was addressed Description: The issue was addressed with improved checks.
apple
CVE-2025-31183CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-31183 [CRITICAL] CVE-2025-31183: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-31183 Component: Siri Impact: An app may be able to access sensitive user data Description: The issue was addressed with improved restriction of data container access.
apple
CVE-2025-24247CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24247 [CRITICAL] CVE-2025-24247: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24247 Component: WindowServer Impact: An attacker may be able to cause unexpected app termination Description: A type confusion issue was addressed with improved checks.
apple
CVE-2025-24231CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24231 [CRITICAL] CVE-2025-24231: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24231 Component: AppleMobileFileIntegrity Impact: An app may be able to modify protected parts of the file system Description: The issue was addressed with improved checks.
apple
CVE-2025-24259CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24259 [CRITICAL] CVE-2025-24259: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24259 Component: Parental Controls Impact: An app may be able to retrieve Safari bookmarks without an entitlement check Description: This issue was addressed with additional entitlement checks.
apple
CVE-2025-24190CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24190 [CRITICAL] CVE-2025-24190: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24190 Component: CoreMedia Impact: Processing a maliciously crafted video file may lead to unexpected app termination or corrupt process memory Description: The issue was addressed with improved memory handling.
apple
CVE-2025-30444CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-30444 [CRITICAL] CVE-2025-30444: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-30444 Component: SMB Impact: Mounting a maliciously crafted SMB network share may lead to system termination Description: A race condition was addressed with improved locking.
apple
CVE-2025-24266CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24266 [CRITICAL] CVE-2025-24266: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24266 Component: Xsan Impact: An app may be able to cause unexpected system termination Description: A buffer overflow was addressed with improved bounds checking.
apple
CVE-2025-24273CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24273 [CRITICAL] CVE-2025-24273: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24273 Component: GPU Drivers Impact: An app may be able to cause unexpected system termination or corrupt kernel memory Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2025-30462CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-30462 [CRITICAL] CVE-2025-30462: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-30462 Component: Dock Impact: An app may be able to modify protected parts of the file system Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2025-24237CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24237 [CRITICAL] CVE-2025-24237: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24237 Component: BiometricKit Impact: An app may be able to cause unexpected system termination Description: A buffer overflow was addressed with improved bounds checking.
apple
CVE-2025-31188HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-31188 [HIGH] CVE-2025-31188: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-31188 Component: StorageKit Impact: An app may be able to bypass Privacy preferences Description: A race condition was addressed with additional validation.
apple
CVE-2025-24234HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24234 [HIGH] CVE-2025-24234: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24234 Component: AccountPolicy Impact: A malicious app may be able to gain root privileges Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2025-24228HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24228 [HIGH] CVE-2025-24228: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24228 Component: SMB Impact: An app may be able to execute arbitrary code with kernel privileges Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2025-24277HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24277 [HIGH] CVE-2025-24277: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24277 Component: Crash Reporter Impact: An app may be able to gain root privileges Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
apple
CVE-2024-54533HIGHCVSS 7.0v14.7.52025-03-31
CVE-2024-54533 [HIGH] CVE-2024-54533: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2024-54533 Component: Spotlight Impact: An app may be able to access sensitive user data Description: A permissions issue was addressed with additional sandbox restrictions.
apple
CVE-2025-30464HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-30464 [HIGH] CVE-2025-30464: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-30464 Component: GPU Drivers Impact: An app may be able to cause unexpected system termination or corrupt kernel memory Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2025-31189HIGHCVSS 8.2v14.7.52025-03-31
CVE-2025-31189 [HIGH] CVE-2025-31189: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-31189 Component: Disk Images Impact: An app may be able to break out of its sandbox Description: A file quarantine bypass was addressed with additional checks.
apple