Apple Macos Sonoma vulnerabilities
959 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
959
CISA KEV
11
actively exploited
Public exploits
3
Exploited in wild
6
Severity breakdown
CRITICAL73HIGH289MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 14 of 48
CVE-2025-30457CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-30457 [CRITICAL] CVE-2025-30457: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-30457
Component: SystemMigration
Impact: A malicious app may be able to create symlinks to protected regions of the disk
Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2025-24256CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24256 [CRITICAL] CVE-2025-24256: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24256
Component: GPU Drivers
Impact: An app may be able to disclose kernel memory
Description: The issue was addressed with improved bounds checks.
apple
CVE-2025-30452CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-30452 [CRITICAL] CVE-2025-30452: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-30452
Component: Sandbox
Impact: An input validation issue was addressed
Description: The issue was addressed with improved checks.
apple
CVE-2025-31183CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-31183 [CRITICAL] CVE-2025-31183: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-31183
Component: Siri
Impact: An app may be able to access sensitive user data
Description: The issue was addressed with improved restriction of data container access.
apple
CVE-2025-24247CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24247 [CRITICAL] CVE-2025-24247: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24247
Component: WindowServer
Impact: An attacker may be able to cause unexpected app termination
Description: A type confusion issue was addressed with improved checks.
apple
CVE-2025-24231CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24231 [CRITICAL] CVE-2025-24231: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24231
Component: AppleMobileFileIntegrity
Impact: An app may be able to modify protected parts of the file system
Description: The issue was addressed with improved checks.
apple
CVE-2025-24259CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24259 [CRITICAL] CVE-2025-24259: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24259
Component: Parental Controls
Impact: An app may be able to retrieve Safari bookmarks without an entitlement check
Description: This issue was addressed with additional entitlement checks.
apple
CVE-2025-24190CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24190 [CRITICAL] CVE-2025-24190: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24190
Component: CoreMedia
Impact: Processing a maliciously crafted video file may lead to unexpected app termination or corrupt process memory
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-30444CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-30444 [CRITICAL] CVE-2025-30444: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-30444
Component: SMB
Impact: Mounting a maliciously crafted SMB network share may lead to system termination
Description: A race condition was addressed with improved locking.
apple
CVE-2025-24266CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24266 [CRITICAL] CVE-2025-24266: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24266
Component: Xsan
Impact: An app may be able to cause unexpected system termination
Description: A buffer overflow was addressed with improved bounds checking.
apple
CVE-2025-24273CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24273 [CRITICAL] CVE-2025-24273: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24273
Component: GPU Drivers
Impact: An app may be able to cause unexpected system termination or corrupt kernel memory
Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2025-30462CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-30462 [CRITICAL] CVE-2025-30462: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-30462
Component: Dock
Impact: An app may be able to modify protected parts of the file system
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2025-24237CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24237 [CRITICAL] CVE-2025-24237: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24237
Component: BiometricKit
Impact: An app may be able to cause unexpected system termination
Description: A buffer overflow was addressed with improved bounds checking.
apple
CVE-2025-31188HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-31188 [HIGH] CVE-2025-31188: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-31188
Component: StorageKit
Impact: An app may be able to bypass Privacy preferences
Description: A race condition was addressed with additional validation.
apple
CVE-2025-24234HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24234 [HIGH] CVE-2025-24234: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24234
Component: AccountPolicy
Impact: A malicious app may be able to gain root privileges
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2025-24228HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24228 [HIGH] CVE-2025-24228: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24228
Component: SMB
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2025-24277HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24277 [HIGH] CVE-2025-24277: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24277
Component: Crash Reporter
Impact: An app may be able to gain root privileges
Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
apple
CVE-2024-54533HIGHCVSS 7.0v14.7.52025-03-31
CVE-2024-54533 [HIGH] CVE-2024-54533: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2024-54533
Component: Spotlight
Impact: An app may be able to access sensitive user data
Description: A permissions issue was addressed with additional sandbox restrictions.
apple
CVE-2025-30464HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-30464 [HIGH] CVE-2025-30464: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-30464
Component: GPU Drivers
Impact: An app may be able to cause unexpected system termination or corrupt kernel memory
Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2025-31189HIGHCVSS 8.2v14.7.52025-03-31
CVE-2025-31189 [HIGH] CVE-2025-31189: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-31189
Component: Disk Images
Impact: An app may be able to break out of its sandbox
Description: A file quarantine bypass was addressed with additional checks.
apple