cbcvebase.

Apple Macos Sonoma vulnerabilities

960 known vulnerabilities affecting apple/macos_sonoma.

Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1

Vulnerabilities

Page 16 of 48
CVE-2023-42835P3HIGHCVSS 7.5v14.12023-10-25
CVE-2023-42835 [HIGH] CVE-2023-42835: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42835 Component: RemoteViewServices Impact: An attacker may be able to access user data Description: A logic issue was addressed with improved checks.
apple
CVE-2024-44256P3HIGHCVSS 8.6v14.7.12024-10-28
CVE-2024-44256 [HIGH] CVE-2024-44256: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44256 Component: Messages Impact: An app may be able to break out of its sandbox Description: The issue was addressed with improved input sanitization.
apple
CVE-2025-31189P3HIGHCVSS 8.2v14.7.52025-03-31
CVE-2025-31189 [HIGH] CVE-2025-31189: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-31189 Component: Disk Images Impact: An app may be able to break out of its sandbox Description: A file quarantine bypass was addressed with additional checks.
apple
CVE-2024-40803P3HIGHCVSS 7.5v14.62024-07-29
CVE-2024-40803 [HIGH] CVE-2024-40803: macOS Sonoma 14.6 Apple Security Update: About the security content of macOS Sonoma 14.6 Product: macOS Sonoma Version: 14.6 CVE: CVE-2024-40803 Component: Keychain Access Impact: An attacker may be able to cause unexpected app termination Description: A type confusion issue was addressed with improved checks.
apple
CVE-2023-32396P3HIGHCVSS 7.8v142023-09-26
CVE-2023-32396 [HIGH] CVE-2023-32396: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-32396 Component: Dev Tools Impact: An app may be able to gain elevated privileges Description: This issue was addressed with improved checks.
apple
CVE-2025-31208P3HIGHCVSS 7.5v14.7.62025-05-12
CVE-2025-31208 [HIGH] CVE-2025-31208: macOS Sonoma 14.7.6 Apple Security Update: About the security content of macOS Sonoma 14.7.6 Product: macOS Sonoma Version: 14.7.6 CVE: CVE-2025-31208 Component: CoreAudio Impact: Parsing a file may lead to an unexpected app termination Description: The issue was addressed with improved checks.
apple
CVE-2025-24173P3HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-24173 [HIGH] CVE-2025-24173: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24173 Component: Power Services Impact: An app may be able to break out of its sandbox Description: This issue was addressed with additional entitlement checks.
apple
CVE-2024-44218P3HIGHCVSS 7.8v14.7.12024-10-28
CVE-2024-44218 [HIGH] CVE-2024-44218: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44218 Component: SceneKit Impact: Processing a maliciously crafted file may lead to heap corruption Description: This issue was addressed with improved checks.
apple
CVE-2024-23276P3HIGHCVSS 7.8v14.42024-03-07
CVE-2024-23276 [HIGH] CVE-2024-23276: macOS Sonoma 14.4 Apple Security Update: About the security content of macOS Sonoma 14.4 Product: macOS Sonoma Version: 14.4 CVE: CVE-2024-23276 Component: Admin Framework Impact: An app may be able to elevate privileges Description: A logic issue was addressed with improved checks.
apple
CVE-2025-30449P3HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-30449 [HIGH] CVE-2025-30449: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-30449 Component: StorageKit Impact: An app may be able to gain root privileges Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-31188P3HIGHCVSS 7.8v14.7.52025-03-31
CVE-2025-31188 [HIGH] CVE-2025-31188: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-31188 Component: StorageKit Impact: An app may be able to bypass Privacy preferences Description: A race condition was addressed with additional validation.
apple
CVE-2024-27848P3HIGHCVSS 7.8v14.52024-05-13
CVE-2024-27848 [HIGH] CVE-2024-27848: macOS Sonoma 14.5 Apple Security Update: About the security content of macOS Sonoma 14.5 Product: macOS Sonoma Version: 14.5 CVE: CVE-2024-27848 Component: StorageKit Impact: A malicious app may be able to gain root privileges Description: This issue was addressed with improved permissions checking.
apple
CVE-2023-32359P3HIGHCVSS 7.5v142023-09-26
CVE-2023-32359 [HIGH] CVE-2023-32359: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-32359 Component: WebKit Impact: A user's password may be read aloud by VoiceOver Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2025-43476P3HIGHCVSS 7.8v14.8.22025-11-03
CVE-2025-43476 [HIGH] CVE-2025-43476: macOS Sonoma 14.8.2 Apple Security Update: About the security content of macOS Sonoma 14.8.2 Product: macOS Sonoma Version: 14.8.2 CVE: CVE-2025-43476 Component: SharedFileList Impact: An app may be able to break out of its sandbox Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-43364P3HIGHCVSS 7.8v14.82025-09-15
CVE-2025-43364 [HIGH] CVE-2025-43364: macOS Sonoma 14.8 Apple Security Update: About the security content of macOS Sonoma 14.8 Product: macOS Sonoma Version: 14.8 CVE: CVE-2025-43364 Component: NetFSFramework Impact: An app may be able to break out of its sandbox Description: A race condition was addressed with additional validation.
apple
CVE-2025-24177P3HIGHCVSS 7.5v14.7.52025-03-31
CVE-2025-24177 [HIGH] CVE-2025-24177: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24177 Component: AirPlay Impact: An attacker on the local network may be able to cause a denial-of-service Description: A null pointer dereference was addressed with improved input validation.
apple
CVE-2025-43261P3CRITICALCVSS 9.8v14.7.72025-07-29
CVE-2025-43261 [CRITICAL] CVE-2025-43261: macOS Sonoma 14.7.7 Apple Security Update: About the security content of macOS Sonoma 14.7.7 Product: macOS Sonoma Version: 14.7.7 CVE: CVE-2025-43261 Component: File Bookmark Impact: An app may be able to break out of its sandbox Description: A logic issue was addressed with improved checks.
apple
CVE-2025-24259P3CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-24259 [CRITICAL] CVE-2025-24259: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24259 Component: Parental Controls Impact: An app may be able to retrieve Safari bookmarks without an entitlement check Description: This issue was addressed with additional entitlement checks.
apple
CVE-2025-43243P3CRITICALCVSS 9.8v14.7.72025-07-29
CVE-2025-43243 [CRITICAL] CVE-2025-43243: macOS Sonoma 14.7.7 Apple Security Update: About the security content of macOS Sonoma 14.7.7 Product: macOS Sonoma Version: 14.7.7 CVE: CVE-2025-43243 Component: Software Update Impact: An app may be able to modify protected parts of the file system Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-43244P3CRITICALCVSS 9.8v14.7.72025-07-29
CVE-2025-43244 [CRITICAL] CVE-2025-43244: macOS Sonoma 14.7.7 Apple Security Update: About the security content of macOS Sonoma 14.7.7 Product: macOS Sonoma Version: 14.7.7 CVE: CVE-2025-43244 Component: AMD Impact: An app may be able to cause unexpected system termination Description: A race condition was addressed with improved state handling.
apple
Apple Macos Sonoma vulnerabilities | cvebase