Apple Macos Sonoma vulnerabilities
959 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
959
CISA KEV
11
actively exploited
Public exploits
3
Exploited in wild
6
Severity breakdown
CRITICAL73HIGH289MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 16 of 48
CVE-2025-30471HIGHCVSS 7.5v14.7.52025-03-31
CVE-2025-30471 [HIGH] CVE-2025-30471: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-30471
Component: Security
Impact: A remote user may be able to cause a denial-of-service
Description: A validation issue was addressed with improved logic.
apple
CVE-2025-30460HIGHCVSS 7.4v14.7.52025-03-31
CVE-2025-30460 [HIGH] CVE-2025-30460: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-30460
Component: Automator
Impact: An app may be able to access protected user data
Description: A permissions issue was addressed by removing vulnerable code and adding additional checks.
apple
CVE-2024-9681MEDIUMCVSS 6.5v14.7.52025-03-31
CVE-2024-9681 [MEDIUM] CVE-2024-9681: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2024-9681
Component: CVE-2024-9681
apple
CVE-2025-31187MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-31187 [MEDIUM] CVE-2025-31187: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-31187
Component: Dock
Impact: An app may be able to modify protected parts of the file system
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2025-30445MEDIUMCVSS 6.5v14.7.52025-03-31
CVE-2025-30445 [MEDIUM] CVE-2025-30445: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-30445
Component: AirPlay
Impact: An attacker on the local network may cause an unexpected app termination
Description: A type confusion issue was addressed with improved checks.
apple
CVE-2025-24272MEDIUMCVSS 6.8v14.7.52025-03-31
CVE-2025-24272 [MEDIUM] CVE-2025-24272: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24272
Component: AppleMobileFileIntegrity
Impact: An app may be able to modify protected parts of the file system
Description: The issue was addressed with improved checks.
apple
CVE-2025-24210MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24210 [MEDIUM] CVE-2025-24210: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24210
Component: ImageIO
Impact: Parsing an image may lead to disclosure of user information
Description: A logic error was addressed with improved error handling.
apple
CVE-2025-24236MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24236 [MEDIUM] CVE-2025-24236: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24236
Component: CoreMedia
Impact: An app may be able to access sensitive user data
Description: An access issue was addressed with additional sandbox restrictions.
apple
CVE-2025-24203MEDIUMCVSS 5.0v14.7.52025-03-31
CVE-2025-24203 [MEDIUM] CVE-2025-24203: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24203
Component: Kernel
Impact: An app may be able to modify protected parts of the file system
Description: The issue was addressed with improved checks.
apple
CVE-2025-24179MEDIUMCVSS 5.7v14.7.52025-03-31
CVE-2025-24179 [MEDIUM] CVE-2025-24179: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24179
Component: AirPlay
Impact: An attacker on the local network may be able to cause a denial-of-service
Description: A null pointer dereference was addressed with improved input validation.
apple
CVE-2025-24270MEDIUMCVSS 5.7v14.7.52025-03-31
CVE-2025-24270 [MEDIUM] CVE-2025-24270: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24270
Component: AirPlay
Impact: An attacker on the local network may be able to leak sensitive user information
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2025-24215MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24215 [MEDIUM] CVE-2025-24215: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24215
Component: CloudKit
Impact: A malicious app may be able to access private information
Description: The issue was addressed with improved checks.
apple
CVE-2025-30470MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-30470 [MEDIUM] CVE-2025-30470: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-30470
Component: Maps
Impact: An app may be able to read sensitive location information
Description: A path handling issue was addressed with improved logic.
apple
CVE-2025-24164MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24164 [MEDIUM] CVE-2025-24164: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24164
Component: PackageKit
Impact: An app may be able to modify protected parts of the file system
Description: A logic issue was addressed with improved checks.
apple
CVE-2025-24131MEDIUMCVSS 6.5v14.7.52025-03-31
CVE-2025-24131 [MEDIUM] CVE-2025-24131: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24131
Component: AirPlay
Impact: An attacker on the local network may be able to cause a denial-of-service
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-24251MEDIUMCVSS 6.5v14.7.52025-03-31
CVE-2025-24251 [MEDIUM] CVE-2025-24251: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24251
Component: AirPlay
Impact: An attacker on the local network may cause an unexpected app termination
Description: The issue was addressed with improved checks.
apple
CVE-2025-24261MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24261 [MEDIUM] CVE-2025-24261: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24261
Component: PackageKit
Impact: An app may be able to modify protected parts of the file system
Description: The issue was addressed with improved checks.
apple
CVE-2025-24148MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24148 [MEDIUM] CVE-2025-24148: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24148
Component: LaunchServices
Impact: A malicious JAR file may bypass Gatekeeper checks
Description: This issue was addressed with improved handling of executable types.
apple
CVE-2025-31198MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-31198 [MEDIUM] CVE-2025-31198: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-31198
Component: Xsan
Impact: An app may be able to cause unexpected system termination or corrupt kernel memory
Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2025-30429MEDIUMCVSS 6.3v14.7.52025-03-31
CVE-2025-30429 [MEDIUM] CVE-2025-30429: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-30429
Component: Calendar
Impact: An app may be able to break out of its sandbox
Description: A path handling issue was addressed with improved validation.
apple