Apple Macos Sonoma vulnerabilities
960 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 17 of 48
CVE-2025-31219P3HIGHCVSS 7.1v14.7.62025-05-12
CVE-2025-31219 [HIGH] CVE-2025-31219: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-31219
Component: Kernel
Impact: An attacker may be able to cause unexpected system termination or corrupt kernel memory
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-41076P3HIGHCVSS 7.3v142023-09-26
CVE-2023-41076 [HIGH] CVE-2023-41076: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-41076
Component: Windows Installer
Impact: An app may be able to elevate privileges
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2025-30432P3MEDIUMCVSS 6.4v14.7.52025-03-31
CVE-2025-30432 [MEDIUM] CVE-2025-30432: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-30432
Component: Kernel
Impact: A malicious app may be able to attempt passcode entries on a locked device and thereby cause escalating time delays after 4 failures
Description: A logic issue was addressed with improved state management.
apple
CVE-2025-31209P3MEDIUMCVSS 6.3v14.7.62025-05-12
CVE-2025-31209 [MEDIUM] CVE-2025-31209: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-31209
Component: CoreGraphics
Impact: Parsing a file may lead to disclosure of user information
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2025-27113P3LOWCVSS 2.9v14.7.52025-03-31
CVE-2025-27113 [LOW] CVE-2025-27113: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-27113
Component: CVE-2025-27113
apple
CVE-2023-4735P3HIGHCVSS 7.8v14.12023-10-25
CVE-2023-4735 [HIGH] CVE-2023-4735: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-4735
Component: CVE-2023-4735
apple
CVE-2023-40407P3HIGHCVSS 7.5v142023-09-26
CVE-2023-40407 [HIGH] CVE-2023-40407: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-40407
Component: CUPS
Impact: A remote attacker may be able to cause a denial-of-service
Description: The issue was addressed with improved bounds checks.
apple
CVE-2024-23268P3HIGHCVSS 7.8v14.42024-03-07
CVE-2024-23268 [HIGH] CVE-2024-23268: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23268
Component: PackageKit
Impact: An app may be able to elevate privileges
Description: An injection issue was addressed with improved input validation.
apple
CVE-2024-23274P3HIGHCVSS 7.8v14.42024-03-07
CVE-2024-23274 [HIGH] CVE-2024-23274: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23274
Component: PackageKit
Impact: An app may be able to elevate privileges
Description: An injection issue was addressed with improved input validation.
apple
CVE-2024-27843P3HIGHCVSS 7.8v14.52024-05-13
CVE-2024-27843 [HIGH] CVE-2024-27843: macOS Sonoma 14.5
Apple Security Update: About the security content of macOS Sonoma 14.5
Product: macOS Sonoma
Version: 14.5
CVE: CVE-2024-27843
Component: SharedFileList
Impact: An app may be able to elevate privileges
Description: A logic issue was addressed with improved checks.
apple
CVE-2025-43407P3HIGHCVSS 7.8v14.8.22025-11-03
CVE-2025-43407 [HIGH] CVE-2025-43407: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43407
Component: Assets
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed with improved entitlements.
apple
CVE-2025-24120P3HIGHCVSS 7.5v14.7.32025-01-27
CVE-2025-24120 [HIGH] CVE-2025-24120: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24120
Component: WindowServer
Impact: An attacker may be able to cause unexpected app termination
Description: This issue was addressed by improved management of object lifetimes.
apple
CVE-2025-30424P3CRITICALCVSS 9.8v14.7.52025-03-31
CVE-2025-30424 [CRITICAL] CVE-2025-30424: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-30424
Component: Photos Storage
Impact: Deleting a conversation in Messages may expose user contact information in system logging
Description: A logging issue was addressed with improved data redaction.
apple
CVE-2025-24102P3CRITICALCVSS 9.8v14.7.32025-01-27
CVE-2025-24102 [CRITICAL] CVE-2025-24102: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24102
Component: CoreRoutine
Impact: An app may be able to determine a user’s current location
Description: The issue was addressed with improved checks.
apple
CVE-2024-54551P3HIGHCVSS 7.5v14.62024-07-29
CVE-2024-54551 [HIGH] CVE-2024-54551: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-54551
Component: WebKit
Impact: Processing web content may lead to a denial-of-service
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-24146P3CRITICALCVSS 9.8v14.7.32025-01-27
CVE-2025-24146 [CRITICAL] CVE-2025-24146: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24146
Component: Photos Storage
Impact: Deleting a conversation in Messages may expose user contact information in system logging
Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2024-24795P3MEDIUMCVSS 6.3v14.62024-07-29
CVE-2024-24795 [MEDIUM] CVE-2024-24795: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-24795
Component: AirDrop
Impact: A file received from AirDrop may not have the quarantine flag applied
Description: This issue was addressed through improved state management.
apple
CVE-2025-31232P3HIGHCVSS 7.1v14.7.62025-05-12
CVE-2025-31232 [HIGH] CVE-2025-31232: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-31232
Component: Installer
Impact: A sandboxed app may be able to access sensitive user data
Description: A logic issue was addressed with improved checks.
apple
CVE-2025-31233P3MEDIUMCVSS 6.3v14.7.62025-05-12
CVE-2025-31233 [MEDIUM] CVE-2025-31233: macOS Sonoma 14.7.6
Apple Security Update: About the security content of macOS Sonoma 14.7.6
Product: macOS Sonoma
Version: 14.7.6
CVE: CVE-2025-31233
Component: CoreMedia
Impact: Processing a maliciously crafted video file may lead to unexpected app termination or corrupt process memory
Description: The issue was addressed with improved input sanitization.
apple
CVE-2023-40443P3HIGHCVSS 7.8v142023-09-26
CVE-2023-40443 [HIGH] CVE-2023-40443: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-40443
Component: Spotlight
Impact: An app may be able to gain root privileges
Description: The issue was addressed with improved checks.
apple