Apple Macos Sonoma vulnerabilities
959 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
959
CISA KEV
11
actively exploited
Public exploits
3
Exploited in wild
6
Severity breakdown
CRITICAL73HIGH289MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 15 of 48
CVE-2025-24252HIGHCVSS 8.8v14.7.52025-03-31
CVE-2025-24252 [HIGH] CVE-2025-24252: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24252
Component: AirPlay
Impact: An attacker on the local network may be able to corrupt process memory
Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2025-24267HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24267 [HIGH] CVE-2025-24267: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24267
Component: DiskArbitration
Impact: An app may be able to gain root privileges
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-31264HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-31264 [HIGH] CVE-2025-31264: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-31264
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
apple
CVE-2025-24129HIGHCVSS 7.5v14.7.52025-03-31
CVE-2025-24129 [HIGH] CVE-2025-24129: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24129
Component: AirPlay
Impact: An attacker on the local network may cause an unexpected app termination
Description: A type confusion issue was addressed with improved checks.
apple
CVE-2025-24178HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24178 [HIGH] CVE-2025-24178: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24178
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
apple
CVE-2025-24255HIGHCVSS 8.4v14.7.52025-03-31
CVE-2025-24255 [HIGH] CVE-2025-24255: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24255
Component: Disk Images
Impact: An app may be able to break out of its sandbox
Description: A file access issue was addressed with improved input validation.
apple
CVE-2025-24243HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24243 [HIGH] CVE-2025-24243: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24243
Component: Audio
Impact: Processing a maliciously crafted file may lead to arbitrary code execution
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-31182HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-31182 [HIGH] CVE-2025-31182: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-31182
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
apple
CVE-2025-24238HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24238 [HIGH] CVE-2025-24238: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24238
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
apple
CVE-2025-24170HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24170 [HIGH] CVE-2025-24170: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24170
Component: CoreServices
Impact: An app may be able to gain root privileges
Description: A logic issue was addressed with improved file handling.
apple
CVE-2025-24173HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24173 [HIGH] CVE-2025-24173: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24173
Component: Power Services
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed with additional entitlement checks.
apple
CVE-2024-56171HIGHCVSS 7.8v14.7.52025-03-31
CVE-2024-56171 [HIGH] CVE-2024-56171: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2024-56171
Component: CVE-2024-56171
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed through improved state management.
apple
CVE-2025-24206HIGHCVSS 7.7v14.7.52025-03-31
CVE-2025-24206 [HIGH] CVE-2025-24206: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24206
Component: AirPlay
Impact: An attacker on the local network may be able to bypass authentication policy
Description: An authentication issue was addressed with improved state management.
apple
CVE-2025-30456HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-30456 [HIGH] CVE-2025-30456: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-30456
Component: DiskArbitration
Impact: An app may be able to gain root privileges
Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
apple
CVE-2025-30449HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-30449 [HIGH] CVE-2025-30449: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-30449
Component: StorageKit
Impact: An app may be able to gain root privileges
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-24126HIGHCVSS 7.3v14.7.52025-03-31
CVE-2025-24126 [HIGH] CVE-2025-24126: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24126
Component: AirPlay
Impact: An attacker on the local network may be able to corrupt process memory
Description: An input validation issue was addressed.
apple
CVE-2025-24177HIGHCVSS 7.5v14.7.52025-03-31
CVE-2025-24177 [HIGH] CVE-2025-24177: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24177
Component: AirPlay
Impact: An attacker on the local network may be able to cause a denial-of-service
Description: A null pointer dereference was addressed with improved input validation.
apple
CVE-2025-24229HIGHCVSS 7.4v14.7.52025-03-31
CVE-2025-24229 [HIGH] CVE-2025-24229: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24229
Component: Installer
Impact: A sandboxed app may be able to access sensitive user data
Description: A logic issue was addressed with improved checks.
apple
CVE-2025-24196HIGHCVSS 8.8v14.7.52025-03-31
CVE-2025-24196 [HIGH] CVE-2025-24196: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24196
Component: Kernel
Impact: An attacker with user privileges may be able to read kernel memory
Description: A type confusion issue was addressed with improved memory handling.
apple
CVE-2025-24254HIGHCVSS 8.8v14.7.52025-03-31
CVE-2025-24254 [HIGH] CVE-2025-24254: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24254
Component: Software Update
Impact: A user may be able to elevate privileges
Description: This issue was addressed with improved validation of symlinks.
apple