Apple Macos Sonoma vulnerabilities
960 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 19 of 48
CVE-2025-43210P4MEDIUMCVSS 6.3v14.7.72025-07-29
CVE-2025-43210 [MEDIUM] CVE-2025-43210: macOS Sonoma 14.7.7
Apple Security Update: About the security content of macOS Sonoma 14.7.7
Product: macOS Sonoma
Version: 14.7.7
CVE: CVE-2025-43210
Component: CoreMedia
Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory
Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2023-4734P4HIGHCVSS 7.8v14.12023-10-25
CVE-2023-4734 [HIGH] CVE-2023-4734: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-4734
Component: CVE-2023-4734
apple
CVE-2023-4736P4HIGHCVSS 7.8v14.12023-10-25
CVE-2023-4736 [HIGH] CVE-2023-4736: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-4736
Component: CVE-2023-4736
apple
CVE-2024-40787P4HIGHCVSS 7.1v14.62024-07-29
CVE-2024-40787 [HIGH] CVE-2024-40787: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-40787
Component: Shortcuts
Impact: A shortcut may be able to bypass Internet permission requirements
Description: This issue was addressed by adding an additional prompt for user consent.
apple
CVE-2024-40774P4HIGHCVSS 7.1v14.62024-07-29
CVE-2024-40774 [HIGH] CVE-2024-40774: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-40774
Component: AppleMobileFileIntegrity
Impact: An app may be able to bypass Privacy preferences
Description: A downgrade issue was addressed with additional code-signing restrictions.
apple
CVE-2024-44159P4HIGHCVSS 7.1v14.7.12024-10-28
CVE-2024-44159 [HIGH] CVE-2024-44159: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44159
Component: PackageKit
Impact: An app may be able to bypass Privacy preferences
Description: A path deletion vulnerability was addressed by preventing vulnerable code from running with privileges.
apple
CVE-2024-44156P4HIGHCVSS 7.1v14.7.12024-10-28
CVE-2024-44156 [HIGH] CVE-2024-44156: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44156
Component: PackageKit
Impact: An app may be able to bypass Privacy preferences
Description: A path deletion vulnerability was addressed by preventing vulnerable code from running with privileges.
apple
CVE-2025-24176P4HIGHCVSS 7.1v14.7.32025-01-27
CVE-2025-24176 [HIGH] CVE-2025-24176: macOS Sonoma 14.7.3
Apple Security Update: About the security content of macOS Sonoma 14.7.3
Product: macOS Sonoma
Version: 14.7.3
CVE: CVE-2025-24176
Component: StorageKit
Impact: A local attacker may be able to elevate their privileges
Description: A permissions issue was addressed with improved validation.
apple
CVE-2025-43304P4HIGHCVSS 7.0v14.82025-09-15
CVE-2025-43304 [HIGH] CVE-2025-43304: macOS Sonoma 14.8
Apple Security Update: About the security content of macOS Sonoma 14.8
Product: macOS Sonoma
Version: 14.8
CVE: CVE-2025-43304
Component: StorageKit
Impact: An app may be able to gain root privileges
Description: A race condition was addressed with improved state handling.
apple
CVE-2023-42974P4HIGHCVSS 7.0v14.22023-12-11
CVE-2023-42974 [HIGH] CVE-2023-42974: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42974
Component: IOUSBDeviceFamily
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: A race condition was addressed with improved state handling.
apple
CVE-2026-20617P4HIGHCVSS 7.0v14.8.42026-02-11
CVE-2026-20617 [HIGH] CVE-2026-20617: macOS Sonoma 14.8.4
Apple Security Update: About the security content of macOS Sonoma 14.8.4
Product: macOS Sonoma
Version: 14.8.4
CVE: CVE-2026-20617
Component: CoreServices
Impact: An app may be able to gain root privileges
Description: A race condition was addressed with improved state handling.
apple
CVE-2024-23280P4MEDIUMCVSS 6.5v14.42024-03-07
CVE-2024-23280 [MEDIUM] CVE-2024-23280: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23280
Component: WebKit
Impact: A maliciously crafted webpage may be able to fingerprint the user
Description: An injection issue was addressed with improved validation.
apple
CVE-2024-23254P4MEDIUMCVSS 6.5v14.42024-03-07
CVE-2024-23254 [MEDIUM] CVE-2024-23254: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23254
Component: WebKit
Impact: A malicious website may exfiltrate audio data cross-origin
Description: The issue was addressed with improved UI handling.
apple
CVE-2024-40789P4MEDIUMCVSS 6.5v14.62024-07-29
CVE-2024-40789 [MEDIUM] CVE-2024-40789: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-40789
Component: WebKit
Impact: Processing maliciously crafted web content may lead to an unexpected process crash
Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2024-23206P4MEDIUMCVSS 6.5v14.32024-01-22
CVE-2024-23206 [MEDIUM] CVE-2024-23206: macOS Sonoma 14.3
Apple Security Update: About the security content of macOS Sonoma 14.3
Product: macOS Sonoma
Version: 14.3
CVE: CVE-2024-23206
Component: WebKit
Impact: A maliciously crafted webpage may be able to fingerprint the user
Description: An access issue was addressed with improved access restrictions.
apple
CVE-2024-23234P4MEDIUMCVSS 6.7v14.42024-03-07
CVE-2024-23234 [MEDIUM] CVE-2024-23234: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23234
Component: Intel Graphics Driver
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: An out-of-bounds write issue was addressed with improved input validation.
apple
CVE-2023-42961P4MEDIUMCVSS 6.3v142023-09-26
CVE-2023-42961 [MEDIUM] CVE-2023-42961: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-42961
Component: Intents
Impact: A sandboxed process may be able to circumvent sandbox restrictions
Description: A path handling issue was addressed with improved validation.
apple
CVE-2024-44164P4HIGHCVSS 7.1v14.72024-09-16
CVE-2024-44164 [HIGH] CVE-2024-44164: macOS Sonoma 14.7
Apple Security Update: About the security content of macOS Sonoma 14.7
Product: macOS Sonoma
Version: 14.7
CVE: CVE-2024-44164
Component: AppleMobileFileIntegrity
Impact: An app may be able to bypass Privacy preferences
Description: This issue was addressed with improved checks.
apple
CVE-2023-42959P4HIGHCVSS 7.0v142023-09-26
CVE-2023-42959 [HIGH] CVE-2023-42959: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-42959
Component: Graphics Drivers
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: A race condition was addressed with improved state handling.
apple
CVE-2025-24272P4MEDIUMCVSS 6.8v14.7.52025-03-31
CVE-2025-24272 [MEDIUM] CVE-2025-24272: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24272
Component: AppleMobileFileIntegrity
Impact: An app may be able to modify protected parts of the file system
Description: The issue was addressed with improved checks.
apple