Apple Macos Sonoma vulnerabilities

959 known vulnerabilities affecting apple/macos_sonoma.

Total CVEs
959
CISA KEV
11
actively exploited
Public exploits
3
Exploited in wild
6
Severity breakdown
CRITICAL73HIGH289MEDIUM533LOW63UNKNOWN1

Vulnerabilities

Page 15 of 48
CVE-2025-24252HIGHCVSS 8.8v14.7.52025-03-31
CVE-2025-24252 [HIGH] CVE-2025-24252: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24252 Component: AirPlay Impact: An attacker on the local network may be able to corrupt process memory Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2025-24267HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24267 [HIGH] CVE-2025-24267: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24267 Component: DiskArbitration Impact: An app may be able to gain root privileges Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-31264HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-31264 [HIGH] CVE-2025-31264: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-31264 Component: CVE-2024-56171 Impact: An app may be able to break out of its sandbox Description: This issue was addressed through improved state management.
apple
CVE-2025-24129HIGHCVSS 7.5v14.7.52025-03-31
CVE-2025-24129 [HIGH] CVE-2025-24129: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24129 Component: AirPlay Impact: An attacker on the local network may cause an unexpected app termination Description: A type confusion issue was addressed with improved checks.
apple
CVE-2025-24178HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24178 [HIGH] CVE-2025-24178: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24178 Component: CVE-2024-56171 Impact: An app may be able to break out of its sandbox Description: This issue was addressed through improved state management.
apple
CVE-2025-24255HIGHCVSS 8.4v14.7.52025-03-31
CVE-2025-24255 [HIGH] CVE-2025-24255: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24255 Component: Disk Images Impact: An app may be able to break out of its sandbox Description: A file access issue was addressed with improved input validation.
apple
CVE-2025-24243HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24243 [HIGH] CVE-2025-24243: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24243 Component: Audio Impact: Processing a maliciously crafted file may lead to arbitrary code execution Description: The issue was addressed with improved memory handling.
apple
CVE-2025-31182HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-31182 [HIGH] CVE-2025-31182: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-31182 Component: CVE-2024-56171 Impact: An app may be able to break out of its sandbox Description: This issue was addressed through improved state management.
apple
CVE-2025-24238HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24238 [HIGH] CVE-2025-24238: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24238 Component: CVE-2024-56171 Impact: An app may be able to break out of its sandbox Description: This issue was addressed through improved state management.
apple
CVE-2025-24170HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24170 [HIGH] CVE-2025-24170: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24170 Component: CoreServices Impact: An app may be able to gain root privileges Description: A logic issue was addressed with improved file handling.
apple
CVE-2025-24173HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24173 [HIGH] CVE-2025-24173: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24173 Component: Power Services Impact: An app may be able to break out of its sandbox Description: This issue was addressed with additional entitlement checks.
apple
CVE-2024-56171HIGHCVSS 7.8v14.7.52025-03-31
CVE-2024-56171 [HIGH] CVE-2024-56171: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2024-56171 Component: CVE-2024-56171 Impact: An app may be able to break out of its sandbox Description: This issue was addressed through improved state management.
apple
CVE-2025-24206HIGHCVSS 7.7v14.7.52025-03-31
CVE-2025-24206 [HIGH] CVE-2025-24206: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24206 Component: AirPlay Impact: An attacker on the local network may be able to bypass authentication policy Description: An authentication issue was addressed with improved state management.
apple
CVE-2025-30456HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-30456 [HIGH] CVE-2025-30456: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-30456 Component: DiskArbitration Impact: An app may be able to gain root privileges Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
apple
CVE-2025-30449HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-30449 [HIGH] CVE-2025-30449: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-30449 Component: StorageKit Impact: An app may be able to gain root privileges Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-24126HIGHCVSS 7.3v14.7.52025-03-31
CVE-2025-24126 [HIGH] CVE-2025-24126: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24126 Component: AirPlay Impact: An attacker on the local network may be able to corrupt process memory Description: An input validation issue was addressed.
apple
CVE-2025-24177HIGHCVSS 7.5v14.7.52025-03-31
CVE-2025-24177 [HIGH] CVE-2025-24177: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24177 Component: AirPlay Impact: An attacker on the local network may be able to cause a denial-of-service Description: A null pointer dereference was addressed with improved input validation.
apple
CVE-2025-24229HIGHCVSS 7.4v14.7.52025-03-31
CVE-2025-24229 [HIGH] CVE-2025-24229: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24229 Component: Installer Impact: A sandboxed app may be able to access sensitive user data Description: A logic issue was addressed with improved checks.
apple
CVE-2025-24196HIGHCVSS 8.8v14.7.52025-03-31
CVE-2025-24196 [HIGH] CVE-2025-24196: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24196 Component: Kernel Impact: An attacker with user privileges may be able to read kernel memory Description: A type confusion issue was addressed with improved memory handling.
apple
CVE-2025-24254HIGHCVSS 8.8v14.7.52025-03-31
CVE-2025-24254 [HIGH] CVE-2025-24254: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24254 Component: Software Update Impact: A user may be able to elevate privileges Description: This issue was addressed with improved validation of symlinks.
apple