Apple Macos Sonoma vulnerabilities

959 known vulnerabilities affecting apple/macos_sonoma.

Total CVEs
959
CISA KEV
11
actively exploited
Public exploits
3
Exploited in wild
6
Severity breakdown
CRITICAL73HIGH289MEDIUM533LOW63UNKNOWN1

Vulnerabilities

Page 16 of 48
CVE-2025-30471HIGHCVSS 7.5v14.7.52025-03-31
CVE-2025-30471 [HIGH] CVE-2025-30471: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-30471 Component: Security Impact: A remote user may be able to cause a denial-of-service Description: A validation issue was addressed with improved logic.
apple
CVE-2025-30460HIGHCVSS 7.4v14.7.52025-03-31
CVE-2025-30460 [HIGH] CVE-2025-30460: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-30460 Component: Automator Impact: An app may be able to access protected user data Description: A permissions issue was addressed by removing vulnerable code and adding additional checks.
apple
CVE-2024-9681MEDIUMCVSS 6.5v14.7.52025-03-31
CVE-2024-9681 [MEDIUM] CVE-2024-9681: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2024-9681 Component: CVE-2024-9681
apple
CVE-2025-31187MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-31187 [MEDIUM] CVE-2025-31187: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-31187 Component: Dock Impact: An app may be able to modify protected parts of the file system Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2025-30445MEDIUMCVSS 6.5v14.7.52025-03-31
CVE-2025-30445 [MEDIUM] CVE-2025-30445: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-30445 Component: AirPlay Impact: An attacker on the local network may cause an unexpected app termination Description: A type confusion issue was addressed with improved checks.
apple
CVE-2025-24272MEDIUMCVSS 6.8v14.7.52025-03-31
CVE-2025-24272 [MEDIUM] CVE-2025-24272: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24272 Component: AppleMobileFileIntegrity Impact: An app may be able to modify protected parts of the file system Description: The issue was addressed with improved checks.
apple
CVE-2025-24210MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24210 [MEDIUM] CVE-2025-24210: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24210 Component: ImageIO Impact: Parsing an image may lead to disclosure of user information Description: A logic error was addressed with improved error handling.
apple
CVE-2025-24236MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24236 [MEDIUM] CVE-2025-24236: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24236 Component: CoreMedia Impact: An app may be able to access sensitive user data Description: An access issue was addressed with additional sandbox restrictions.
apple
CVE-2025-24203MEDIUMCVSS 5.0v14.7.52025-03-31
CVE-2025-24203 [MEDIUM] CVE-2025-24203: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24203 Component: Kernel Impact: An app may be able to modify protected parts of the file system Description: The issue was addressed with improved checks.
apple
CVE-2025-24179MEDIUMCVSS 5.7v14.7.52025-03-31
CVE-2025-24179 [MEDIUM] CVE-2025-24179: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24179 Component: AirPlay Impact: An attacker on the local network may be able to cause a denial-of-service Description: A null pointer dereference was addressed with improved input validation.
apple
CVE-2025-24270MEDIUMCVSS 5.7v14.7.52025-03-31
CVE-2025-24270 [MEDIUM] CVE-2025-24270: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24270 Component: AirPlay Impact: An attacker on the local network may be able to leak sensitive user information Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2025-24215MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24215 [MEDIUM] CVE-2025-24215: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24215 Component: CloudKit Impact: A malicious app may be able to access private information Description: The issue was addressed with improved checks.
apple
CVE-2025-30470MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-30470 [MEDIUM] CVE-2025-30470: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-30470 Component: Maps Impact: An app may be able to read sensitive location information Description: A path handling issue was addressed with improved logic.
apple
CVE-2025-24164MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24164 [MEDIUM] CVE-2025-24164: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24164 Component: PackageKit Impact: An app may be able to modify protected parts of the file system Description: A logic issue was addressed with improved checks.
apple
CVE-2025-24131MEDIUMCVSS 6.5v14.7.52025-03-31
CVE-2025-24131 [MEDIUM] CVE-2025-24131: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24131 Component: AirPlay Impact: An attacker on the local network may be able to cause a denial-of-service Description: The issue was addressed with improved memory handling.
apple
CVE-2025-24251MEDIUMCVSS 6.5v14.7.52025-03-31
CVE-2025-24251 [MEDIUM] CVE-2025-24251: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24251 Component: AirPlay Impact: An attacker on the local network may cause an unexpected app termination Description: The issue was addressed with improved checks.
apple
CVE-2025-24261MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24261 [MEDIUM] CVE-2025-24261: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24261 Component: PackageKit Impact: An app may be able to modify protected parts of the file system Description: The issue was addressed with improved checks.
apple
CVE-2025-24148MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24148 [MEDIUM] CVE-2025-24148: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24148 Component: LaunchServices Impact: A malicious JAR file may bypass Gatekeeper checks Description: This issue was addressed with improved handling of executable types.
apple
CVE-2025-31198MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-31198 [MEDIUM] CVE-2025-31198: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-31198 Component: Xsan Impact: An app may be able to cause unexpected system termination or corrupt kernel memory Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2025-30429MEDIUMCVSS 6.3v14.7.52025-03-31
CVE-2025-30429 [MEDIUM] CVE-2025-30429: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-30429 Component: Calendar Impact: An app may be able to break out of its sandbox Description: A path handling issue was addressed with improved validation.
apple